Arbitrary Code Execution via Cross-Site Scripting (XSS) in HELM 3.1.19 and Earlier

Arbitrary Code Execution via Cross-Site Scripting (XSS) in HELM 3.1.19 and Earlier

CVE-2004-1499 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers to execute arbitrary web script or HTML via the Subject field.

Learn more about our Web App Pen Testing.