Unrated severityNVD Advisory· Published Jun 16, 2014· Updated Jun 17, 2026
CVE-2014-4164
CVE-2014-4164
Description
Cross-site scripting (XSS) vulnerability in AlgoSec FireFlow 6.3-b230 allows remote attackers to inject arbitrary web script or HTML via a user signature to SelfService/Prefs.html.
Affected products
2cpe:2.3:a:algosec:fireflow:6.3:b230:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:algosec:fireflow:6.3:b230:*:*:*:*:*:*
- (no CPE)range: 6.3-b230
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.