Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-0287

Опубликовано: 06 янв. 2012
Источник: ubuntu
Приоритет: medium
CVSS2: 2.6

Описание

Cross-site scripting (XSS) vulnerability in wp-comments-post.php in WordPress 3.3.x before 3.3.1, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via the query string in a POST operation that is not properly handled by the "Duplicate comment detected" feature.

РелизСтатусПримечание
devel

not-affected

3.3.2+dfsg-1
hardy

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

ignored

end of life
precise

not-affected

3.3.1+dfsg-1
quantal

not-affected

3.3.2+dfsg-1
raring

not-affected

3.3.2+dfsg-1
saucy

not-affected

3.3.2+dfsg-1

Показывать по

2.6 Low

CVSS2

Связанные уязвимости

nvd
больше 13 лет назад

Cross-site scripting (XSS) vulnerability in wp-comments-post.php in WordPress 3.3.x before 3.3.1, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via the query string in a POST operation that is not properly handled by the "Duplicate comment detected" feature.

debian
больше 13 лет назад

Cross-site scripting (XSS) vulnerability in wp-comments-post.php in Wo ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in wp-comments-post.php in WordPress 3.3.x before 3.3.1, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via the query string in a POST operation that is not properly handled by the "Duplicate comment detected" feature.

2.6 Low

CVSS2