Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2004-1061

Опубликовано: 04 янв. 2005
Источник: ubuntu
Приоритет: untriaged
EPSS Низкий
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.

РелизСтатусПримечание
dapper

released

2.20-1
devel

released

2.20-1
edgy

released

2.20-1
feisty

released

2.20-1
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 68%
0.00572
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
больше 20 лет назад

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.

debian
больше 20 лет назад

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, incl ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in Bugzilla before 2.18, including 2.16.x before 2.16.11, allows remote attackers to inject arbitrary HTML and web script via forced error messages, as demonstrated using the action parameter.

EPSS

Процентиль: 68%
0.00572
Низкий

4.3 Medium

CVSS2