Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-2250

Опубликовано: 07 нояб. 2019
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3
CVSS3: 6.1

Описание

Drupal 5.x and 6.x before 6.16 uses a user-supplied value in output during site installation which could allow an attacker to craft a URL and perform a cross-site scripting attack.

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

ignored

end of life
maverick

not-affected

6.18-1ubuntu1
natty

not-affected

oneiric

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

DNE

Показывать по

Ссылки на источники

4.3 Medium

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.1
nvd
больше 5 лет назад

Drupal 5.x and 6.x before 6.16 uses a user-supplied value in output during site installation which could allow an attacker to craft a URL and perform a cross-site scripting attack.

CVSS3: 6.1
debian
больше 5 лет назад

Drupal 5.x and 6.x before 6.16 uses a user-supplied value in output du ...

github
больше 3 лет назад

Drupal 6.x before 6.16 uses a user-supplied value in output during site installation which could allow an attacker to craft a URL and perform a cross-site scripting attack.

4.3 Medium

CVSS2

6.1 Medium

CVSS3