Описание
Multiple cross-site scripting (XSS) vulnerabilities in the History Window implementation in Kadu 0.9.0 through 0.11.0 allow remote attackers to inject arbitrary web script or HTML via a crafted (1) SMS message, (2) presence message, or (3) status description.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 0.11.1-2 |
| hardy | not-affected | |
| lucid | not-affected | |
| maverick | not-affected | 0.6.5.4.ds1-3ubuntu2 |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | not-affected | 0.11.1-2 |
| quantal | not-affected | 0.11.1-2 |
| raring | not-affected | 0.11.1-2 |
| upstream | not-affected | 0.11.1-2 |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
Multiple cross-site scripting (XSS) vulnerabilities in the History Window implementation in Kadu 0.9.0 through 0.11.0 allow remote attackers to inject arbitrary web script or HTML via a crafted (1) SMS message, (2) presence message, or (3) status description.
Multiple cross-site scripting (XSS) vulnerabilities in the History Win ...
Multiple cross-site scripting (XSS) vulnerabilities in the History Window implementation in Kadu 0.9.0 through 0.11.0 allow remote attackers to inject arbitrary web script or HTML via a crafted (1) SMS message, (2) presence message, or (3) status description.
EPSS
4.3 Medium
CVSS2