Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-3565

Опубликовано: 31 янв. 2020
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.1

Описание

Multiple cross-site scripting (XSS) vulnerabilities in the HTTP Interface in VideoLAN VLC Media Player before 2.0.7 allow remote attackers to inject arbitrary web script or HTML via the (1) command parameter to requests/vlm_cmd.xml, (2) dir parameter to requests/browse.xml, or (3) URI in a request, which is returned in an error message through share/lua/intf/http.lua.

РелизСтатусПримечание
devel

not-affected

2.1.2-2build2
esm-infra-legacy/trusty

DNE

trusty/esm was not-affected [2.1.2-2build2]
lucid

ignored

end of life
precise

released

2.0.8-0ubuntu0.12.04.1
quantal

released

2.0.8-0ubuntu0.12.10.1
raring

released

2.0.8-0ubuntu0.13.04.1
saucy

not-affected

2.0.8-1
trusty

not-affected

2.1.2-2build2
trusty/esm

not-affected

2.1.2-2build2
upstream

released

2.0.7

Показывать по

EPSS

Процентиль: 60%
0.00396
Низкий

4.3 Medium

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.1
nvd
около 6 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTTP Interface in VideoLAN VLC Media Player before 2.0.7 allow remote attackers to inject arbitrary web script or HTML via the (1) command parameter to requests/vlm_cmd.xml, (2) dir parameter to requests/browse.xml, or (3) URI in a request, which is returned in an error message through share/lua/intf/http.lua.

CVSS3: 6.1
debian
около 6 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTTP Interf ...

github
почти 4 года назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTTP Interface in VideoLAN VLC Media Player before 2.0.7 allow remote attackers to inject arbitrary web script or HTML via the (1) command parameter to requests/vlm_cmd.xml, (2) dir parameter to requests/browse.xml, or (3) URI in a request, which is returned in an error message through share/lua/intf/http.lua.

EPSS

Процентиль: 60%
0.00396
Низкий

4.3 Medium

CVSS2

6.1 Medium

CVSS3