CVE-2014-3877

Source
https://cve.org/CVERecord?id=CVE-2014-3877
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2014-3877.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2014-3877
Downstream
Published
2014-06-18T14:55:12Z
Modified
2026-04-10T03:43:51.269623Z
Summary
[none]
Details

Incomplete blacklist vulnerability in Frams' Fast File EXchange (F*EX, aka fex) before fex-20140530 allows remote attackers to conduct cross-site scripting (XSS) attacks via the addto parameter to fup.

References

Affected packages