CVE-2014-9434
Absolut Engine 1.73 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in admin/managerrelated.php in the administrative backend in Absolut Engine 1.73 allows remote authenticated users to inject arbitrary web script or HTML via the title parameter.
Exploits (1)
Scores
EPSS
0.0069
EPSS Percentile
71.9%
Details
CWE
CWE-79
Status
published
Products (1)
absolutengine/absolut_engine
1.73
Published
Jan 02, 2015
Tracked Since
Feb 18, 2026