CVE-2014-7205

EPSS 84.2%

Arbitrary JavaScript Execution in bassmaster

Published: 10/24/2017Modified: 11/8/2023

Description

A vulnerability exists in bassmaster <= 1.5.1 that allows for an attacker to provide arbitrary JavaScript that is then executed server side via eval. ## Recommendation Update to bassmaster version 1.5.2 or greater.

Affected packages (1)

References (9)