Описание
Cross-site scripting (XSS) vulnerability in webcheck before 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the (1) url, (2) title, or (3) author name in a crawled page, which is not properly sanitized in the tooltips of a report.
Релиз | Статус | Примечание |
---|---|---|
dapper | ignored | end of life |
devel | released | 1.9.7 |
edgy | released | 1.9.7 |
feisty | released | 1.9.7 |
gutsy | released | 1.9.7 |
hardy | released | 1.9.7 |
intrepid | released | 1.9.7 |
jaunty | released | 1.9.7 |
karmic | released | 1.9.7 |
upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in webcheck before 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the (1) url, (2) title, or (3) author name in a crawled page, which is not properly sanitized in the tooltips of a report.
Cross-site scripting (XSS) vulnerability in webcheck before 1.9.6 allo ...
Cross-site scripting (XSS) vulnerability in webcheck before 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the (1) url, (2) title, or (3) author name in a crawled page, which is not properly sanitized in the tooltips of a report.
EPSS
4.3 Medium
CVSS2