A vulnerability was found in ahmyi RivetTracker. It has been declared as problematic. Affected by this vulnerability is the function changeColor of the file css.php. The manipulation of the argument set_css leads to cross site scripting. The attack can be launched remotely. The patch is named 45a0f33876d58cb7e4a0f17da149e58fc893b858. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217267.
References
Link | Resource |
---|---|
https://github.com/ahmyi/rivettracker/commit/45a0f33876d58cb7e4a0f17da149e58fc893b858 | Patch Third Party Advisory |
https://github.com/ahmyi/rivettracker/pull/1 | Patch Third Party Advisory |
https://vuldb.com/?ctiid.217267 | Third Party Advisory |
https://vuldb.com/?id.217267 | Third Party Advisory |
Configurations
History
12 Oct 2023, 09:15
Type | Values Removed | Values Added |
---|---|---|
Summary | A vulnerability was found in ahmyi RivetTracker. It has been declared as problematic. Affected by this vulnerability is the function changeColor of the file css.php. The manipulation of the argument set_css leads to cross site scripting. The attack can be launched remotely. The patch is named 45a0f33876d58cb7e4a0f17da149e58fc893b858. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217267. |
Information
Published : 2023-01-03 09:15
Updated : 2024-05-17 00:51
NVD link : CVE-2012-10002
Mitre link : CVE-2012-10002
CVE.ORG link : CVE-2012-10002
JSON object : View
Products Affected
rivettracker_project
- rivettracker
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')