Описание
Roundup 1.6 allows XSS via the URI because frontends/roundup.cgi and roundup/cgi/wsgi_handler.py mishandle 404 errors.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| cosmic | DNE | |
| devel | DNE | |
| disco | DNE | |
| esm-apps/xenial | released | 1.4.20-1.1+deb8u2build0.16.04.1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| precise/esm | DNE | |
| trusty | ignored | end of standard support |
| trusty/esm | DNE | trusty was needed |
| upstream | needs-triage |
Показывать по
10
Ссылки на источники
4.3 Medium
CVSS2
6.1 Medium
CVSS3
Связанные уязвимости
CVSS3: 6.1
nvd
почти 7 лет назад
Roundup 1.6 allows XSS via the URI because frontends/roundup.cgi and roundup/cgi/wsgi_handler.py mishandle 404 errors.
CVSS3: 6.1
debian
почти 7 лет назад
Roundup 1.6 allows XSS via the URI because frontends/roundup.cgi and r ...
CVSS3: 6.1
github
почти 7 лет назад
Moderate severity vulnerability that affects roundup
4.3 Medium
CVSS2
6.1 Medium
CVSS3