Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-4591

Опубликовано: 20 июл. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in the print_object function in lib/datalib.php in Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3, when a developer debugging script is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors involving object states.

РелизСтатусПримечание
devel

not-affected

1.9.9.dfsg2-5
hardy

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

ignored

end of life
precise

not-affected

1.9.9.dfsg2-5
quantal

not-affected

1.9.9.dfsg2-5
raring

not-affected

1.9.9.dfsg2-5
saucy

not-affected

1.9.9.dfsg2-5

Показывать по

Ссылки на источники

EPSS

Процентиль: 57%
0.00359
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
почти 13 лет назад

Cross-site scripting (XSS) vulnerability in the print_object function in lib/datalib.php in Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3, when a developer debugging script is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors involving object states.

debian
почти 13 лет назад

Cross-site scripting (XSS) vulnerability in the print_object function ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in the print_object function in lib/datalib.php in Moodle 2.0.x before 2.0.6 and 2.1.x before 2.1.3, when a developer debugging script is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors involving object states.

EPSS

Процентиль: 57%
0.00359
Низкий

4.3 Medium

CVSS2