First published: Fri Oct 22 2010(Updated: )
A reflected cross-site scripting (XSS) vulnerability was discovered in Drools Guvnor.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Jboss Business Rules Management System | <5.1.0 | |
debian/jbossas4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-3857 is a XSS vulnerability in JBoss BRMS before version 5.1.0.
CVE-2010-3857 has a severity score of 6.1, which is considered medium.
JBoss BRMS before version 5.1.0 and Redhat Jboss Business Rules Management System up to version 5.1.0 are affected by CVE-2010-3857.
There is no available remedy for CVE-2010-3857. It is advised to update to a fixed version of JBoss BRMS or Redhat Jboss Business Rules Management System when it becomes available.
More information about CVE-2010-3857 can be found at the following references: - CVE: [https://www.cve.org/CVERecord?id=CVE-2010-3857](https://www.cve.org/CVERecord?id=CVE-2010-3857) - NVD: [https://nvd.nist.gov/vuln/detail/CVE-2010-3857](https://nvd.nist.gov/vuln/detail/CVE-2010-3857) - Red Hat Bugzilla: [https://bugzilla.redhat.com/show_bug.cgi?id=645848](https://bugzilla.redhat.com/show_bug.cgi?id=645848) - Debian Security Tracker: [https://security-tracker.debian.org/tracker/CVE-2010-3857](https://security-tracker.debian.org/tracker/CVE-2010-3857)