Логотип exploitDog
bind:CVE-2014-9059
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-9059

Количество 4

Количество 4

ubuntu логотип

CVE-2014-9059

больше 10 лет назад

lib/setup.php in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x before 2.6.6, and 2.7.x before 2.7.3 does not provide charset information in HTTP headers, which might allow remote attackers to conduct cross-site scripting (XSS) attacks via UTF-7 characters during interaction with AJAX scripts.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2014-9059

больше 10 лет назад

lib/setup.php in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x before 2.6.6, and 2.7.x before 2.7.3 does not provide charset information in HTTP headers, which might allow remote attackers to conduct cross-site scripting (XSS) attacks via UTF-7 characters during interaction with AJAX scripts.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2014-9059

больше 10 лет назад

lib/setup.php in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x befo ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-crcq-pw8h-9xwf

около 3 лет назад

Moodle does not provide charset information in HTTP headers

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2014-9059

lib/setup.php in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x before 2.6.6, and 2.7.x before 2.7.3 does not provide charset information in HTTP headers, which might allow remote attackers to conduct cross-site scripting (XSS) attacks via UTF-7 characters during interaction with AJAX scripts.

CVSS2: 4.3
0%
Низкий
больше 10 лет назад
nvd логотип
CVE-2014-9059

lib/setup.php in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x before 2.6.6, and 2.7.x before 2.7.3 does not provide charset information in HTTP headers, which might allow remote attackers to conduct cross-site scripting (XSS) attacks via UTF-7 characters during interaction with AJAX scripts.

CVSS2: 4.3
0%
Низкий
больше 10 лет назад
debian логотип
CVE-2014-9059

lib/setup.php in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x befo ...

CVSS2: 4.3
0%
Низкий
больше 10 лет назад
github логотип
GHSA-crcq-pw8h-9xwf

Moodle does not provide charset information in HTTP headers

0%
Низкий
около 3 лет назад

Уязвимостей на страницу