Логотип exploitDog
bind:CVE-2010-0636
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2010-0636

Количество 4

Количество 4

ubuntu логотип

CVE-2010-0636

почти 16 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to inject arbitrary web script or HTML via the (1) tab parameter to users.php and the PATH_INFO to (2) day.php, (3) month.php, and (4) week.php. NOTE: some of these details are obtained from third party information.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2010-0636

почти 16 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to inject arbitrary web script or HTML via the (1) tab parameter to users.php and the PATH_INFO to (2) day.php, (3) month.php, and (4) week.php. NOTE: some of these details are obtained from third party information.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2010-0636

почти 16 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2 ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-2977-c3c9-wqxf

больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to inject arbitrary web script or HTML via the (1) tab parameter to users.php and the PATH_INFO to (2) day.php, (3) month.php, and (4) week.php. NOTE: some of these details are obtained from third party information.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2010-0636

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to inject arbitrary web script or HTML via the (1) tab parameter to users.php and the PATH_INFO to (2) day.php, (3) month.php, and (4) week.php. NOTE: some of these details are obtained from third party information.

CVSS2: 4.3
0%
Низкий
почти 16 лет назад
nvd логотип
CVE-2010-0636

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to inject arbitrary web script or HTML via the (1) tab parameter to users.php and the PATH_INFO to (2) day.php, (3) month.php, and (4) week.php. NOTE: some of these details are obtained from third party information.

CVSS2: 4.3
0%
Низкий
почти 16 лет назад
debian логотип
CVE-2010-0636

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2 ...

CVSS2: 4.3
0%
Низкий
почти 16 лет назад
github логотип
GHSA-2977-c3c9-wqxf

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to inject arbitrary web script or HTML via the (1) tab parameter to users.php and the PATH_INFO to (2) day.php, (3) month.php, and (4) week.php. NOTE: some of these details are obtained from third party information.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу