CVE-2013-7258

web2ldap <1.1.49 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in web2ldap 1.1.x before 1.1.49 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "displaying group DN and entry data in group administration UI."

Scores

EPSS 0.0038
EPSS Percentile 59.2%

Details

CWE
CWE-79
Status published
Products (10)
web2ldap/web2ldap < 1.1.48
web2ldap/web2ldap
web2ldap/web2ldap
web2ldap/web2ldap
web2ldap/web2ldap
web2ldap/web2ldap
web2ldap/web2ldap
web2ldap/web2ldap
web2ldap/web2ldap
n/a/n/a
Published Jan 03, 2014
Tracked Since Feb 18, 2026