Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-0707

Опубликовано: 22 фев. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py in GNU Mailman 2.1.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) username field in a confirmation message.

РелизСтатусПримечание
dapper

released

2.1.5-9ubuntu4.4
devel

released

1:2.1.14-1
hardy

released

1:2.1.9-9ubuntu1.4
karmic

released

1:2.1.12-2ubuntu0.2
lucid

released

1:2.1.13-1ubuntu0.2
maverick

released

1:2.1.13-4ubuntu0.2
upstream

needs-triage

Показывать по

EPSS

Процентиль: 85%
0.0246
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 14 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py in GNU Mailman 2.1.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) username field in a confirmation message.

nvd
больше 14 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py in GNU Mailman 2.1.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) username field in a confirmation message.

debian
больше 14 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py ...

github
около 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py in GNU Mailman 2.1.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) username field in a confirmation message.

oracle-oval
больше 14 лет назад

ELSA-2011-0308: mailman security update (MODERATE)

EPSS

Процентиль: 85%
0.0246
Низкий

4.3 Medium

CVSS2