Описание
Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode plupload before 1.5.5, as used in WordPress before 3.5.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 3.5.1+dfsg-2 |
esm-apps/xenial | not-affected | 3.5.1+dfsg-2 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [3.5.1+dfsg-2]] |
hardy | ignored | end of life |
lucid | ignored | end of life |
oneiric | ignored | end of life |
precise | ignored | end of life |
precise/esm | DNE | precise was needed |
quantal | ignored | end of life |
raring | not-affected | 3.5.1+dfsg-2 |
Показывать по
4.3 Medium
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode plupload before 1.5.5, as used in WordPress before 3.5.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter.
Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode p ...
Cross-site scripting (XSS) vulnerability in Plupload.as in Moxiecode plupload before 1.5.5, as used in WordPress before 3.5.1 and other products, allows remote attackers to inject arbitrary web script or HTML via the id parameter.
4.3 Medium
CVSS2