CVE-2017-14620: XSS
Published Sep 29, 2017
·Updated
SmarterStats Version 11.3.6347 will Render the Referer Field of HTTP Logfiles from URL /Data/Reports/ReferringURLsWithQueries resulting in Stored Cross Site Scripting.
Affected Software
1 affected component
SmarterTools SmarterStats=11.3.6347
Event History
Sep 29, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14620?
CVE-2017-14620 has been rated as a medium severity vulnerability due to its potential for stored cross-site scripting.
2
How do I fix CVE-2017-14620?
To fix CVE-2017-14620, upgrade to a patched version of SmarterStats that addresses this vulnerability.
3
What type of vulnerability is CVE-2017-14620?
CVE-2017-14620 is classified as a stored cross-site scripting vulnerability affecting SmarterStats.
4
Which versions of SmarterStats are affected by CVE-2017-14620?
CVE-2017-14620 specifically affects SmarterStats version 11.3.6347.
5
What are the implications of CVE-2017-14620?
The implications of CVE-2017-14620 include the potential for attackers to execute malicious scripts in a user's browser when they access specific URLs.