Unrated severityNVD Advisory· Published Jun 17, 2013· Updated Apr 29, 2026
CVE-2012-6565
CVE-2012-6565
Description
Cross-site scripting (XSS) vulnerability in REDCap before 4.14.3 allows remote authenticated users to inject arbitrary web script or HTML via uppercase characters in JavaScript events within user-defined labels.
Affected products
3cpe:2.3:a:vanderbilt:redcap:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:vanderbilt:redcap:*:*:*:*:*:*:*:*range: <=4.14.2
- cpe:2.3:a:vanderbilt:redcap:4.14.0:*:*:*:*:*:*:*
- cpe:2.3:a:vanderbilt:redcap:4.14.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.