Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-1618

Опубликовано: 29 апр. 2010
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in the phpCAS client library before 1.1.0, as used in Moodle 1.8.x before 1.8.12 and 1.9.x before 1.9.8, allows remote attackers to inject arbitrary web script or HTML via a crafted URL, which is not properly handled in an error message.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

1.9.9.dfsg2-2
hardy

ignored

end of life
jaunty

ignored

end of life
karmic

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

not-affected

1.9.9.dfsg2-2
oneiric

not-affected

1.9.9.dfsg2-2
precise

not-affected

1.9.9.dfsg2-2

Показывать по

Ссылки на источники

EPSS

Процентиль: 50%
0.00273
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 15 лет назад

Cross-site scripting (XSS) vulnerability in the phpCAS client library before 1.1.0, as used in Moodle 1.8.x before 1.8.12 and 1.9.x before 1.9.8, allows remote attackers to inject arbitrary web script or HTML via a crafted URL, which is not properly handled in an error message.

nvd
около 15 лет назад

Cross-site scripting (XSS) vulnerability in the phpCAS client library before 1.1.0, as used in Moodle 1.8.x before 1.8.12 and 1.9.x before 1.9.8, allows remote attackers to inject arbitrary web script or HTML via a crafted URL, which is not properly handled in an error message.

debian
около 15 лет назад

Cross-site scripting (XSS) vulnerability in the phpCAS client library ...

github
около 3 лет назад

phpCAS client library and Moodle Cross-site Scripting vulnerability

EPSS

Процентиль: 50%
0.00273
Низкий

4.3 Medium

CVSS2