WsgiDAV is a generic and extendable WebDAV server based on WSGI. Implementations using this library with directory browsing enabled may be susceptible to Cross Site Scripting (XSS) attacks. This issue has been patched, users can upgrade to version 4.1.0. As a workaround, set `dir_browser.enable = False` in the configuration.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2022-11-11T00:00:00
Updated: 2024-08-03T12:56:38.427Z
Reserved: 2022-09-30T00:00:00
Link: CVE-2022-41905
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-11-11T21:15:09.743
Modified: 2024-11-21T07:24:02.283
Link: CVE-2022-41905
Redhat
No data.