Mahara Multiple Cross Site Scripting and HTML Injection Vulnerabilities

Bugtraq ID: 54776
Class: Input Validation Error
CVE: CVE-2012-2237
Remote: Yes
Local: No
Published: Aug 02 2012 12:00AM
Updated: Sep 07 2012 09:39PM
Credit: Vendor and Emanuel Bronshtein.
Vulnerable: Mahara Mahara 1.4.1
Mahara Mahara 1.4
Mahara Mahara 1.3.6
Mahara Mahara 1.3.5
Mahara Mahara 1.3.4
Mahara Mahara 1.3.3
Mahara Mahara 1.2.4
Mahara Mahara 1.2.3
Mahara Mahara 1.3.2
Mahara Mahara 1.3.1
Mahara Mahara 1.3.0
Mahara Mahara 1.2.7
Mahara Mahara 1.2.6
Mahara Mahara 1.2.5
Mahara Mahara 1.2.2
Mahara Mahara 1.2.1
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus