Vulnerabilities (CVE)

Filtered by vendor Apache Subscribe
Filtered by product Continuum
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-0533 1 Apache 2 Archiva, Continuum 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Apache Continuum 1.1 through 1.2.3.1, 1.3.6, and 1.4.0 Beta; and Archiva 1.3.0 through 1.3.3 and 1.0 through 1.22 allows remote attackers to inject arbitrary web script or HTML via a crafted parameter, related to the autoIncludeParameters setting for the extremecomponents table.