Unspecified vulnerability in Mahara before 0.9.1 has unknown impact and remote attack vectors, probably related to cross-site scripting (XSS) in uploaded files.
References
Link | Resource |
---|---|
http://secunia.com/advisories/28484 | Vendor Advisory |
http://www.securityfocus.com/bid/27348 | |
https://eduforge.org/frs/shownotes.php?release_id=342 | Patch |
http://secunia.com/advisories/28484 | Vendor Advisory |
http://www.securityfocus.com/bid/27348 | |
https://eduforge.org/frs/shownotes.php?release_id=342 | Patch |
Configurations
History
21 Nov 2024, 00:41
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/28484 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/27348 - | |
References | () https://eduforge.org/frs/shownotes.php?release_id=342 - Patch |
Information
Published : 2008-01-22 20:00
Updated : 2024-11-21 00:41
NVD link : CVE-2008-0381
Mitre link : CVE-2008-0381
CVE.ORG link : CVE-2008-0381
JSON object : View
Products Affected
mahara
- mahara
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')