Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-2275

Опубликовано: 15 июн. 2010
Источник: ubuntu
Приоритет: low
EPSS Средний
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in dijit/tests/_testCommon.js in Dojo Toolkit SDK before 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the theme parameter, as demonstrated by an attack against dijit/tests/form/test_Button.html.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

hardy

DNE

jaunty

DNE

karmic

DNE

lucid

not-affected

upstream

released

1.4.2

Показывать по

Ссылки на источники

EPSS

Процентиль: 95%
0.16214
Средний

4.3 Medium

CVSS2

Связанные уязвимости

nvd
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in dijit/tests/_testCommon.js in Dojo Toolkit SDK before 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the theme parameter, as demonstrated by an attack against dijit/tests/form/test_Button.html.

debian
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in dijit/tests/_testCommon.js ...

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in dijit/tests/_testCommon.js in Dojo Toolkit SDK before 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the theme parameter, as demonstrated by an attack against dijit/tests/form/test_Button.html.

EPSS

Процентиль: 95%
0.16214
Средний

4.3 Medium

CVSS2