RedHat JBoss Web Framework Kit Cross Site Scripting Vulnerability (CVE-2014-0149)

  Severity: MEDIUM
  Advisory Date: MAY 31, 2016

  DESCRIPTION

Multiple cross-site scripting (XSS) vulnerabilities in Red Hat JBoss Web Framework Kit 2.5.0 allow remote attackers to inject arbitrary web script or HTML via a (1) parameter or (2) id name.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1000552