Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-4430

Опубликовано: 19 мая 2014
Источник: debian
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 allows remote attackers to inject arbitrary web script or HTML via the Host header to lib/web.php.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mahararemovedpackage

Примечания

  • https://bazaar.launchpad.net/~mahara-release/mahara/1.7_STABLE/revision/5830

  • https://bugs.launchpad.net/mahara/+bug/1175446

  • Only exploitable during installation

EPSS

Процентиль: 55%
0.00329
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

Cross-site scripting (XSS) vulnerability in Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 allows remote attackers to inject arbitrary web script or HTML via the Host header to lib/web.php.

nvd
больше 11 лет назад

Cross-site scripting (XSS) vulnerability in Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 allows remote attackers to inject arbitrary web script or HTML via the Host header to lib/web.php.

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 allows remote attackers to inject arbitrary web script or HTML via the Host header to lib/web.php.

EPSS

Процентиль: 55%
0.00329
Низкий