Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-6523

Опубликовано: 09 дек. 2016
Источник: debian
EPSS Низкий

Описание

Multiple cross-site scripting (XSS) vulnerabilities in the media manager in Dotclear before 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) q or (2) link_type parameter to admin/media.php.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dotclearremovedpackage

Примечания

  • Fixed by: https://hg.dotclear.org/dotclear/rev/40d0207e520d

EPSS

Процентиль: 73%
0.00793
Низкий

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 9 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the media manager in Dotclear before 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) q or (2) link_type parameter to admin/media.php.

CVSS3: 6.1
nvd
около 9 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the media manager in Dotclear before 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) q or (2) link_type parameter to admin/media.php.

CVSS3: 6.1
github
больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the media manager in Dotclear before 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) q or (2) link_type parameter to admin/media.php.

EPSS

Процентиль: 73%
0.00793
Низкий