CVE-2014-2844
Cross-site scripting (XSS) vulnerability in F-Secure Messaging Secure Gateway 7.5.0 before Patch 1862 allows remote authenticated administrators to inject arbitrary web script or HTML via the new parameter in the SysUser module to admin.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0021 (0.2%)
Percentile: 43.0%
EPSS: 2026-05-06
Affects
f-secure:secure_messaging_secure_gatewayTechnical description
Cross-site scripting (XSS) vulnerability in F-Secure Messaging Secure Gateway 7.5.0 before Patch 1862 allows remote authenticated administrators to inject arbitrary web script or HTML via the new parameter in the SysUser module to admin.
Published: 4/18/2014, 2:55:25 PM
Last modified: 5/6/2026, 10:30:45 PM