Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-4710

Опубликовано: 28 янв. 2011
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in the addItem method in the Menu widget in YUI before 2.9.0 allows remote attackers to inject arbitrary web script or HTML via a field that is added to a menu, related to documentation that specifies this field as a text field rather than an HTML field, a similar issue to CVE-2010-4569 and CVE-2010-4570.

РелизСтатусПримечание
dapper

DNE

devel

ignored

hardy

ignored

end of life
karmic

ignored

end of life
lucid

ignored

maverick

ignored

natty

ignored

oneiric

ignored

upstream

released

2.9.0

Показывать по

EPSS

Процентиль: 46%
0.00234
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
почти 15 лет назад

Cross-site scripting (XSS) vulnerability in the addItem method in the Menu widget in YUI before 2.9.0 allows remote attackers to inject arbitrary web script or HTML via a field that is added to a menu, related to documentation that specifies this field as a text field rather than an HTML field, a similar issue to CVE-2010-4569 and CVE-2010-4570.

debian
почти 15 лет назад

Cross-site scripting (XSS) vulnerability in the addItem method in the ...

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in the addItem method in the Menu widget in YUI before 2.9.0 allows remote attackers to inject arbitrary web script or HTML via a field that is added to a menu, related to documentation that specifies this field as a text field rather than an HTML field, a similar issue to CVE-2010-4569 and CVE-2010-4570.

EPSS

Процентиль: 46%
0.00234
Низкий

4.3 Medium

CVSS2