Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-2479

Опубликовано: 06 июл. 2010
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in HTML Purifier before 4.1.1, as used in Mahara and other products, when the browser is Internet Explorer, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

РелизСтатусПримечание
dapper

DNE

devel

released

1.2.5-2
hardy

DNE

jaunty

released

1.0.9-2ubuntu0.7
karmic

released

1.1.5-1ubuntu0.3
lucid

released

1.2.4-1ubuntu0.1
maverick

released

1.2.5-2
upstream

released

1.0.15,1.1.9,1.2.5

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

4.1.1+dfsg1-1
hardy

DNE

jaunty

DNE

karmic

released

3.3.0-1ubuntu0.1
lucid

released

4.0.0+dfsg1-1ubuntu0.1
maverick

not-affected

4.1.1+dfsg1-1
upstream

released

4.1.1

Показывать по

EPSS

Процентиль: 64%
0.00467
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in HTML Purifier before 4.1.1, as used in Mahara and other products, when the browser is Internet Explorer, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

debian
больше 15 лет назад

Cross-site scripting (XSS) vulnerability in HTML Purifier before 4.1.1 ...

github
больше 3 лет назад

HTML Purifier Cross-site Scripting (XSS) vulnerability

EPSS

Процентиль: 64%
0.00467
Низкий

4.3 Medium

CVSS2