Medium severity6.1NVD Advisory· Published Feb 13, 2017· Updated May 13, 2026
CVE-2014-9760
CVE-2014-9760
Description
Cross-site scripting (XSS) vulnerability in the displayLogin function in html/index.php in GOsa allows remote attackers to inject arbitrary web script or HTML via the username.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:gosa_project:gosa:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:gosa_project:gosa:-:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.openwall.com/lists/oss-security/2016/01/15/11nvdMailing ListPatchThird Party Advisory
- github.com/gosa-project/gosa-core/commit/e35b990464a2c2cf64d6833a217ed944876e7732nvdPatchVendor Advisory
- www.securityfocus.com/bid/97104nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.