Описание
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1.7.2+debian-1ubuntu1 |
| hardy | DNE | |
| lucid | released | 1.3.3-2ubuntu1.2 |
| oneiric | released | 1.6.2-1ubuntu2.2 |
| precise | not-affected | 1.7.1-1ubuntu1 |
| quantal | not-affected | 1.7.2+debian-1ubuntu1 |
| upstream | released | 1.6.3 |
Показывать по
4.3 Medium
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag.
Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when ...
4.3 Medium
CVSS2