Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-3861

Cross-site scripting (XSS) vulnerability in CDA.xsl in HL7 C-CDA 1.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted reference element within a nonXMLBody element.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.9%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2014-3861
  • Hl7 » C-Cda » Version: 1.1
    cpe:2.3:a:hl7:c-cda:1.1


Contact Us

Shodan ® - All rights reserved