Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-1195

Опубликовано: 12 мар. 2010
Источник: redhat
CVSS2: 5.8
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in the htmlscrubber component in ikiwiki 2.x before 2.53.5 and 3.x before 3.20100312 allows remote attackers to inject arbitrary web script or HTML via a crafted data:image/svg+xml URI.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=574548Ikiwiki: JavaScript code injection via URIs in SVG image (v3.20100312)

EPSS

Процентиль: 55%
0.0032
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in the htmlscrubber component in ikiwiki 2.x before 2.53.5 and 3.x before 3.20100312 allows remote attackers to inject arbitrary web script or HTML via a crafted data:image/svg+xml URI.

nvd
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in the htmlscrubber component in ikiwiki 2.x before 2.53.5 and 3.x before 3.20100312 allows remote attackers to inject arbitrary web script or HTML via a crafted data:image/svg+xml URI.

debian
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in the htmlscrubber component ...

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in the htmlscrubber component in ikiwiki 2.x before 2.53.5 and 3.x before 3.20100312 allows remote attackers to inject arbitrary web script or HTML via a crafted data:image/svg+xml URI.

EPSS

Процентиль: 55%
0.0032
Низкий

5.8 Medium

CVSS2