CVE-2015-0298 Information

Description

Cross-site scripting (XSS) vulnerability in the manager web interface in mod_cluster before 1.3.2.Alpha1 allows remote attackers to inject arbitrary web script or HTML via a crafted MCMP message.

Reference

http://rhn.redhat.com/errata/RHSA-2015-1641.html http://rhn.redhat.com/errata/RHSA-2015-1642.html https://issues.jboss.org/browse/MODCLUSTER-453

Share on: