Описание
Cross-site scripting (XSS) vulnerability in the HTML WikiProcessor in Edgewall Trac 0.9.2 allows remote attackers to inject arbitrary web script or HTML via javascript in the SRC attribute of an IMG tag.
Ссылки
- ExploitPatchVendor Advisory
- Patch
- ExploitPatchVendor Advisory
- Patch
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:edgewall_software:trac:0.9.2:*:*:*:*:*:*:*
EPSS
Процентиль: 71%
0.00658
Низкий
4.3 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
ubuntu
около 20 лет назад
Cross-site scripting (XSS) vulnerability in the HTML WikiProcessor in Edgewall Trac 0.9.2 allows remote attackers to inject arbitrary web script or HTML via javascript in the SRC attribute of an IMG tag.
debian
около 20 лет назад
Cross-site scripting (XSS) vulnerability in the HTML WikiProcessor in ...
CVSS3: 6.1
github
почти 4 года назад
Trac HTML WikiProcessor cross-site scripting (XSS) vulnerability
EPSS
Процентиль: 71%
0.00658
Низкий
4.3 Medium
CVSS2
Дефекты
NVD-CWE-Other