Описание
Request Tracker is vulnerable to a reflected cross-site scripting (XSS) vulnerability via the "Page" parameter in GET requests. An attacker can craft a URL that, when opened, results in arbitrary JavaScript execution in the victim’s browser. This vulnerability affects versions from 5.0.4 up to 5.0.9 and from 6.0.0 up to 6.0.2.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needs-triage | |
| esm-apps-legacy/xenial | needs-triage | |
| esm-apps/bionic | needs-triage | |
| esm-apps/focal | needs-triage | |
| esm-apps/jammy | needs-triage | |
| esm-apps/noble | needs-triage | |
| esm-apps/resolute | needs-triage | |
| jammy | needs-triage | |
| noble | needs-triage | |
| questing | ignored | end of life, was needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 5.0.10+dfsg-3 |
| esm-apps/jammy | released | 5.0.1+dfsg-1ubuntu1+esm2 |
| esm-apps/noble | released | 5.0.5+dfsg-2ubuntu0.1~esm2 |
| esm-apps/resolute | released | 5.0.7+dfsg-6ubuntu0.1~esm1 |
| jammy | needed | |
| noble | needed | |
| questing | ignored | end of life, was needed |
| resolute | needed | |
| upstream | released | 5.0.10+dfsg-1 |
Показывать по
6.1 Medium
CVSS3
Связанные уязвимости
Request Tracker is vulnerable to a reflected cross-site scripting (XSS) vulnerability via the "Page" parameter in GET requests. An attacker can craft a URL that, when opened, results in arbitrary JavaScript execution in the victim’s browser. This vulnerability affects versions from 5.0.4 up to 5.0.9 and from 6.0.0 up to 6.0.2.
Request Tracker is vulnerable to a reflected cross-site scripting (XSS ...
Request Tracker is vulnerable to a reflected cross-site scripting (XSS) vulnerability via the "Page" parameter in GET requests. An attacker can craft a URL that, when opened, results in arbitrary JavaScript execution in the victim’s browser. This vulnerability affects versions from 5.0.4 up to 5.0.9 and from 6.0.0 up to 6.0.2.
6.1 Medium
CVSS3