Описание
Cross-site scripting (XSS) vulnerability in templatefunctions.py in Loggerhead before 1.18.1 allows remote authenticated users to inject arbitrary web script or HTML via a filename, which is not properly handled in a revision view.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| loggerhead | fixed | 1.18.1-1 | package | |
| loggerhead | no-dsa | squeeze | package |
EPSS
Процентиль: 62%
0.00421
Низкий
Связанные уязвимости
ubuntu
больше 14 лет назад
Cross-site scripting (XSS) vulnerability in templatefunctions.py in Loggerhead before 1.18.1 allows remote authenticated users to inject arbitrary web script or HTML via a filename, which is not properly handled in a revision view.
nvd
больше 14 лет назад
Cross-site scripting (XSS) vulnerability in templatefunctions.py in Loggerhead before 1.18.1 allows remote authenticated users to inject arbitrary web script or HTML via a filename, which is not properly handled in a revision view.
EPSS
Процентиль: 62%
0.00421
Низкий