Skip to content

CVE-2014-2280

Cross-site scripting (XSS) vulnerability in the search feature in SeedDMS (formerly LetoDMS and MyDMS) before 4.3.4 allows remote attackers to inject arbitrary web script or HTML via the query parameter.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0029 (0.3%)
Percentil: 52.7%
EPSS: 2026-05-06

Afecta

seeddms:seeddms

Descripción técnica

Cross-site scripting (XSS) vulnerability in the search feature in SeedDMS (formerly LetoDMS and MyDMS) before 4.3.4 allows remote attackers to inject arbitrary web script or HTML via the query parameter.

Publicada: 20/3/2014, 16:55:17
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo