Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2042

Опубликовано: 14 мар. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 3.5

Описание

Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before 4.0.15, 4.5.x before 4.5.11, and 5.0.x before 5.0.6 allow remote authenticated users to inject arbitrary web script or HTML via the url parameter to (1) apps/bookmarks/ajax/addBookmark.php or (2) apps/bookmarks/ajax/editBookmark.php.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [6.0.1+dfsg-1ubuntu1]]
lucid

DNE

precise

not-affected

quantal

ignored

end of life
raring

ignored

end of life
saucy

not-affected

5.0.10+dfsg-1ubuntu1
trusty

not-affected

6.0.1+dfsg-1ubuntu1
trusty/esm

DNE

trusty was not-affected [6.0.1+dfsg-1ubuntu1]
upstream

released

5.0.6

Показывать по

EPSS

Процентиль: 40%
0.00185
Низкий

3.5 Low

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before 4.0.15, 4.5.x before 4.5.11, and 5.0.x before 5.0.6 allow remote authenticated users to inject arbitrary web script or HTML via the url parameter to (1) apps/bookmarks/ajax/addBookmark.php or (2) apps/bookmarks/ajax/editBookmark.php.

debian
почти 12 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before ...

github
больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in ownCloud before 4.0.15, 4.5.x before 4.5.11, and 5.0.x before 5.0.6 allow remote authenticated users to inject arbitrary web script or HTML via the url parameter to (1) apps/bookmarks/ajax/addBookmark.php or (2) apps/bookmarks/ajax/editBookmark.php.

EPSS

Процентиль: 40%
0.00185
Низкий

3.5 Low

CVSS2