Unrated severityNVD Advisory· Published Jan 2, 2015· Updated Jun 17, 2026
CVE-2014-9434
CVE-2014-9434
Description
Cross-site scripting (XSS) vulnerability in admin/managerrelated.php in the administrative backend in Absolut Engine 1.73 allows remote authenticated users to inject arbitrary web script or HTML via the title parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:absolutengine:absolut_engine:1.73:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:absolutengine:absolut_engine:1.73:*:*:*:*:*:*:*
- (no CPE)range: =1.73
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.