Unrated severityNVD Advisory· Published Oct 25, 2004· Updated Jun 16, 2026
CVE-2004-1630
CVE-2004-1630
Description
Cross-site scripting (XSS) vulnerability in the login form in Open WorkFlow Engine (OpenWFE) 1.4.x allows remote attackers to execute arbitrary web script or HTML via the url parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:openwfe:work_flow_engine:1.4.1:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:openwfe:work_flow_engine:1.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:openwfe:work_flow_engine:1.4.2:*:*:*:*:*:*:*
- cpe:2.3:a:openwfe:work_flow_engine:1.4.3:*:*:*:*:*:*:*
- cpe:2.3:a:openwfe:work_flow_engine:1.4.4:*:*:*:*:*:*:*
- cpe:2.3:a:openwfe:work_flow_engine:1.4.5:*:*:*:*:*:*:*
- cpe:2.3:a:openwfe:work_flow_engine:1.4:*:*:*:*:*:*:*
- (no CPE)range: = 1.4.x
Patches
Vulnerability mechanics
References
4- secunia.com/advisories/12970nvdExploitPatchVendor Advisory
- www.securityfocus.com/bid/11514nvdExploitPatchVendor Advisory
- marc.infonvd
- exchange.xforce.ibmcloud.com/vulnerabilities/17853nvd
News mentions
0No linked articles in our index yet.