Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-5284

Опубликовано: 26 нояб. 2012
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

Multiple cross-site scripting (XSS) vulnerabilities in Collabtive 0.6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) User parameter in the edit user profile feature to manageuser.php, (2) y parameter in a newcal action to manageajax.php, and the (3) pic parameter to thumb.php.

РелизСтатусПримечание
devel

released

0.7.6-1
hardy

DNE

lucid

DNE

oneiric

released

0.7-1.1
precise

released

0.7-1.1
quantal

released

0.7.6-1
upstream

released

0.7

Показывать по

4.3 Medium

CVSS2

Связанные уязвимости

nvd
около 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Collabtive 0.6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) User parameter in the edit user profile feature to manageuser.php, (2) y parameter in a newcal action to manageajax.php, and the (3) pic parameter to thumb.php.

debian
около 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Collabtive 0.6. ...

github
больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Collabtive 0.6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) User parameter in the edit user profile feature to manageuser.php, (2) y parameter in a newcal action to manageajax.php, and the (3) pic parameter to thumb.php.

4.3 Medium

CVSS2