Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-5950

Опубликовано: 23 янв. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.1

Описание

Cross-site scripting (XSS) vulnerability in the web UI in Mailman before 2.1.26 allows remote attackers to inject arbitrary web script or HTML via a user-options URL.

РелизСтатусПримечание
artful

released

1:2.1.23-1ubuntu0.2
devel

not-affected

1:2.1.26-1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1:2.1.16-2ubuntu0.5]]
esm-infra/xenial

not-affected

1:2.1.20-1ubuntu0.3
precise/esm

DNE

trusty

released

1:2.1.16-2ubuntu0.5
trusty/esm

DNE

trusty was released [1:2.1.16-2ubuntu0.5]
upstream

released

2.1.26
xenial

released

1:2.1.20-1ubuntu0.3

Показывать по

EPSS

Процентиль: 83%
0.02136
Низкий

4.3 Medium

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.1
redhat
больше 7 лет назад

Cross-site scripting (XSS) vulnerability in the web UI in Mailman before 2.1.26 allows remote attackers to inject arbitrary web script or HTML via a user-options URL.

CVSS3: 6.1
nvd
больше 7 лет назад

Cross-site scripting (XSS) vulnerability in the web UI in Mailman before 2.1.26 allows remote attackers to inject arbitrary web script or HTML via a user-options URL.

CVSS3: 6.1
debian
больше 7 лет назад

Cross-site scripting (XSS) vulnerability in the web UI in Mailman befo ...

suse-cvrf
около 7 лет назад

Security update for mailman

CVSS3: 6.1
github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in the web UI in Mailman before 2.1.26 allows remote attackers to inject arbitrary web script or HTML via a user-options URL.

EPSS

Процентиль: 83%
0.02136
Низкий

4.3 Medium

CVSS2

6.1 Medium

CVSS3