Skip to content

CVE-2014-2844

Cross-site scripting (XSS) vulnerability in F-Secure Messaging Secure Gateway 7.5.0 before Patch 1862 allows remote authenticated administrators to inject arbitrary web script or HTML via the new parameter in the SysUser module to admin.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0021 (0.2%)
Percentile: 43.0%
EPSS: 2026-05-06

Affects

f-secure:secure_messaging_secure_gateway

Technical description

Cross-site scripting (XSS) vulnerability in F-Secure Messaging Secure Gateway 7.5.0 before Patch 1862 allows remote authenticated administrators to inject arbitrary web script or HTML via the new parameter in the SysUser module to admin.

Published: 4/18/2014, 2:55:25 PM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam