CVE-2010-3857: XSS
A reflected cross-site scripting (XSS) vulnerability was discovered in Drools Guvnor.
Other sources
JBoss BRMS before 5.1.0 has a XSS vulnerability via asset=UUID parameter.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2010-3857?
CVE-2010-3857 is a XSS vulnerability in JBoss BRMS before version 5.1.0.
How severe is CVE-2010-3857?
CVE-2010-3857 has a severity score of 6.1, which is considered medium.
Which software is affected by CVE-2010-3857?
JBoss BRMS before version 5.1.0 and Redhat Jboss Business Rules Management System up to version 5.1.0 are affected by CVE-2010-3857.
How can I fix CVE-2010-3857?
There is no available remedy for CVE-2010-3857. It is advised to update to a fixed version of JBoss BRMS or Redhat Jboss Business Rules Management System when it becomes available.
Where can I find more information about CVE-2010-3857?
More information about CVE-2010-3857 can be found at the following references: - CVE: [https://www.cve.org/CVERecord?id=CVE-2010-3857](https://www.cve.org/CVERecord?id=CVE-2010-3857) - NVD: [https://nvd.nist.gov/vuln/detail/CVE-2010-3857](https://nvd.nist.gov/vuln/detail/CVE-2010-3857) - Red Hat Bugzilla: [https://bugzilla.redhat.com/show_bug.cgi?id=645848](https://bugzilla.redhat.com/show_bug.cgi?id=645848) - Debian Security Tracker: [https://security-tracker.debian.org/tracker/CVE-2010-3857](https://security-tracker.debian.org/tracker/CVE-2010-3857)