Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-5951

Опубликовано: 25 мар. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 2.6

Описание

Multiple cross-site scripting (XSS) vulnerabilities in eXtplorer 2.1.3, when used as a component for Joomla!, allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) application.js.php in scripts/ or (2) admin.php, (3) copy_move.php, (4) functions.php, (5) header.php, or (6) upload.php in include/.

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

not-affected

2.1.0b6+dfsg.3-4+deb7u1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [2.1.0b6+dfsg.3-4+deb7u1~build0.14.04.1]]
lucid

DNE

precise

ignored

end of life
precise/esm

DNE

precise was needed
quantal

ignored

end of life
saucy

ignored

end of life
trusty

released

2.1.0b6+dfsg.3-4+deb7u1~build0.14.04.1
trusty/esm

DNE

trusty was released [2.1.0b6+dfsg.3-4+deb7u1~build0.14.04.1]

Показывать по

EPSS

Процентиль: 55%
0.0032
Низкий

2.6 Low

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in eXtplorer 2.1.3, when used as a component for Joomla!, allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) application.js.php in scripts/ or (2) admin.php, (3) copy_move.php, (4) functions.php, (5) header.php, or (6) upload.php in include/.

debian
почти 12 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in eXtplorer 2.1.3 ...

github
больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in eXtplorer 2.1.3, when used as a component for Joomla!, allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) application.js.php in scripts/ or (2) admin.php, (3) copy_move.php, (4) functions.php, (5) header.php, or (6) upload.php in include/.

EPSS

Процентиль: 55%
0.0032
Низкий

2.6 Low

CVSS2