First published: Fri Sep 29 2017(Updated: )
SmarterStats Version 11.3.6347 will Render the Referer Field of HTTP Logfiles from URL /Data/Reports/ReferringURLsWithQueries resulting in Stored Cross Site Scripting.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SmarterTools SmarterStats | =11.3.6347 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14620 has been rated as a medium severity vulnerability due to its potential for stored cross-site scripting.
To fix CVE-2017-14620, upgrade to a patched version of SmarterStats that addresses this vulnerability.
CVE-2017-14620 is classified as a stored cross-site scripting vulnerability affecting SmarterStats.
CVE-2017-14620 specifically affects SmarterStats version 11.3.6347.
The implications of CVE-2017-14620 include the potential for attackers to execute malicious scripts in a user's browser when they access specific URLs.