Описание
Cross-site scripting (XSS) vulnerability in the "download wiki page as text" feature in Trac before 0.10.3.1, when Microsoft Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | ignored | end of life |
| devel | released | 0.10.4-1 |
| edgy | ignored | end of life, was needed |
| feisty | ignored | end of life, was needed |
| gutsy | released | 0.10.4-1 |
| hardy | released | 0.10.4-1 |
| intrepid | released | 0.10.4-1 |
| jaunty | released | 0.10.4-1 |
| karmic | released | 0.10.4-1 |
| upstream | needs-triage |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 61%
0.00411
Низкий
4.3 Medium
CVSS2
Связанные уязвимости
nvd
больше 18 лет назад
Cross-site scripting (XSS) vulnerability in the "download wiki page as text" feature in Trac before 0.10.3.1, when Microsoft Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.
debian
больше 18 лет назад
Cross-site scripting (XSS) vulnerability in the "download wiki page as ...
EPSS
Процентиль: 61%
0.00411
Низкий
4.3 Medium
CVSS2