Описание
Cross-site scripting (XSS) vulnerability in the HTML WikiProcessor in Edgewall Trac 0.9.2 allows remote attackers to inject arbitrary web script or HTML via javascript in the SRC attribute of an IMG tag.
Ссылки
- ExploitPatchVendor Advisory
- Patch
- ExploitPatchVendor Advisory
- Patch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:edgewall_software:trac:0.9.2:*:*:*:*:*:*:*
EPSS
Процентиль: 70%
0.00658
Низкий
4.3 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
ubuntu
больше 19 лет назад
Cross-site scripting (XSS) vulnerability in the HTML WikiProcessor in Edgewall Trac 0.9.2 allows remote attackers to inject arbitrary web script or HTML via javascript in the SRC attribute of an IMG tag.
debian
больше 19 лет назад
Cross-site scripting (XSS) vulnerability in the HTML WikiProcessor in ...
CVSS3: 6.1
github
больше 3 лет назад
Trac HTML WikiProcessor cross-site scripting (XSS) vulnerability
EPSS
Процентиль: 70%
0.00658
Низкий
4.3 Medium
CVSS2
Дефекты
NVD-CWE-Other