CVE-2014-9743
EPSS 0.26%發布日:2015/8/17修改日:2026/4/28
也稱為:DEBIAN-CVE-2014-9743
描述
Cross-site scripting (XSS) vulnerability in the httpd_HtmlError function in network/httpd.c in the web interface in VideoLAN VLC Media Player before 2.2.0 allows remote attackers to inject arbitrary web script or HTML via the path info.
受影響套件(1)
- Debian/vlcfrom 0, < 2.2.0~rc2-1