Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-6780

Опубликовано: 13 нояб. 2013
Источник: debian
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in uploader.swf in the Uploader component in Yahoo! YUI 2.5.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via the allowedDomain parameter.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
yuiremovedpackage
yuino-dsasqueezepackage
yuino-dsawheezypackage
yui3not-affectedpackage
moodlefixed2.5.3-1package
moodleend-of-lifesqueezepackage

EPSS

Процентиль: 73%
0.00777
Низкий

Связанные уязвимости

ubuntu
около 12 лет назад

Cross-site scripting (XSS) vulnerability in uploader.swf in the Uploader component in Yahoo! YUI 2.5.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via the allowedDomain parameter.

redhat
около 12 лет назад

Cross-site scripting (XSS) vulnerability in uploader.swf in the Uploader component in Yahoo! YUI 2.5.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via the allowedDomain parameter.

nvd
около 12 лет назад

Cross-site scripting (XSS) vulnerability in uploader.swf in the Uploader component in Yahoo! YUI 2.5.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via the allowedDomain parameter.

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in uploader.swf in the Uploader component in Yahoo! YUI 2.5.0 through 2.9.0 allows remote attackers to inject arbitrary web script or HTML via the allowedDomain parameter.

EPSS

Процентиль: 73%
0.00777
Низкий