Логотип exploitDog
bind:CVE-2014-9042
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-9042

Количество 3

Количество 3

nvd логотип

CVE-2014-9042

около 11 лет назад

Cross-site scripting (XSS) vulnerability in the import functionality in the bookmarks application in ownCloud before 5.0.18, 6.x before 6.0.6, and 7.x before 7.0.3 allows remote authenticated users to inject arbitrary web script or HTML by importing a link with an unspecified protocol. NOTE: this can be leveraged by remote attackers using CVE-2014-9041.

CVSS2: 3.5
EPSS: Низкий
debian логотип

CVE-2014-9042

около 11 лет назад

Cross-site scripting (XSS) vulnerability in the import functionality i ...

CVSS2: 3.5
EPSS: Низкий
github логотип

GHSA-45x6-999p-rm3h

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in the import functionality in the bookmarks application in ownCloud before 5.0.18, 6.x before 6.0.6, and 7.x before 7.0.3 allows remote authenticated users to inject arbitrary web script or HTML by importing a link with an unspecified protocol. NOTE: this can be leveraged by remote attackers using CVE-2014-9041.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2014-9042

Cross-site scripting (XSS) vulnerability in the import functionality in the bookmarks application in ownCloud before 5.0.18, 6.x before 6.0.6, and 7.x before 7.0.3 allows remote authenticated users to inject arbitrary web script or HTML by importing a link with an unspecified protocol. NOTE: this can be leveraged by remote attackers using CVE-2014-9041.

CVSS2: 3.5
0%
Низкий
около 11 лет назад
debian логотип
CVE-2014-9042

Cross-site scripting (XSS) vulnerability in the import functionality i ...

CVSS2: 3.5
0%
Низкий
около 11 лет назад
github логотип
GHSA-45x6-999p-rm3h

Cross-site scripting (XSS) vulnerability in the import functionality in the bookmarks application in ownCloud before 5.0.18, 6.x before 6.0.6, and 7.x before 7.0.3 allows remote authenticated users to inject arbitrary web script or HTML by importing a link with an unspecified protocol. NOTE: this can be leveraged by remote attackers using CVE-2014-9041.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу