CVE-2017-14995: XSS
The Management Console in WSO2 Application Server 5.3.0, WSO2 Business Process Server 3.6.0, WSO2 Business Rules Server 2.2.0, WSO2 Complex Event Processor 4.2.0, WSO2 Dashboard Server 2.0.0, WSO2 Data Analytics Server 3.1.0, WSO2 Data Services Server 3.5.1, and WSO2 Machine Learner 1.2.0 is affected by stored XSS.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-14995?
CVE-2017-14995 is categorized as a moderate severity vulnerability.
How do I fix CVE-2017-14995?
To fix CVE-2017-14995, it is recommended to upgrade to the patched versions of affected WSO2 products.
Which WSO2 products are affected by CVE-2017-14995?
CVE-2017-14995 affects WSO2 Application Server 5.3.0, Business Process Server 3.6.0, and several other WSO2 products.
What type of vulnerability is CVE-2017-14995?
CVE-2017-14995 is a security vulnerability in the Management Console of WSO2 products.
Is there a workaround for CVE-2017-14995?
No specific workaround for CVE-2017-14995 is mentioned; upgrading is the recommended action.