Описание
Cross-site scripting (XSS) vulnerability in webcheck before 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the (1) url, (2) title, or (3) author name in a crawled page, which is not properly sanitized in the tooltips of a report.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | ignored | end of life |
| devel | released | 1.9.7 |
| edgy | released | 1.9.7 |
| feisty | released | 1.9.7 |
| gutsy | released | 1.9.7 |
| hardy | released | 1.9.7 |
| intrepid | released | 1.9.7 |
| jaunty | released | 1.9.7 |
| karmic | released | 1.9.7 |
| upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in webcheck before 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the (1) url, (2) title, or (3) author name in a crawled page, which is not properly sanitized in the tooltips of a report.
Cross-site scripting (XSS) vulnerability in webcheck before 1.9.6 allo ...
Cross-site scripting (XSS) vulnerability in webcheck before 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the (1) url, (2) title, or (3) author name in a crawled page, which is not properly sanitized in the tooltips of a report.
EPSS
4.3 Medium
CVSS2