CVE-2014-4722
EPSS 0.40%
Description
Multiple cross-site scripting (XSS) vulnerabilities in the OCS Reports Web Interface in OCS Inventory NG allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
How to fix CVE-2014-4722
No fixed version has been published yet. Mitigate by removing the affected package or applying upstream guidance from the references below.
- Debian/ocsinventory-server—no fix listed
Is CVE-2014-4722 being exploited?
Low — EPSS is 0.4%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0