mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-06-19 17:32:41 +00:00
123 lines
4.0 KiB
JSON
123 lines
4.0 KiB
JSON
{
|
|
"CVE_data_meta" : {
|
|
"ASSIGNER" : "cve@mitre.org",
|
|
"ID" : "CVE-2010-1593",
|
|
"STATE" : "PUBLIC"
|
|
},
|
|
"affects" : {
|
|
"vendor" : {
|
|
"vendor_data" : [
|
|
{
|
|
"product" : {
|
|
"product_data" : [
|
|
{
|
|
"product_name" : "n/a",
|
|
"version" : {
|
|
"version_data" : [
|
|
{
|
|
"version_value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format" : "MITRE",
|
|
"data_type" : "CVE",
|
|
"data_version" : "4.0",
|
|
"description" : {
|
|
"description_data" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "Multiple cross-site scripting (XSS) vulnerabilities in SilverStripe before 2.3.5 allow remote attackers to inject arbitrary web script or HTML via (1) the CommenterURL parameter to PostCommentForm, and in the Forum module before 0.2.5 in SilverStripe before 2.3.5 allow remote attackers to inject arbitrary web script or HTML via (2) the Search parameter to forums/search (aka the search script)."
|
|
}
|
|
]
|
|
},
|
|
"problemtype" : {
|
|
"problemtype_data" : [
|
|
{
|
|
"description" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references" : {
|
|
"reference_data" : [
|
|
{
|
|
"name" : "20100122 Silverstripe <= v2.3.4: two XSS vulnerabilities",
|
|
"refsource" : "BUGTRAQ",
|
|
"url" : "http://www.securityfocus.com/archive/1/509139/100/0/threaded"
|
|
},
|
|
{
|
|
"name" : "20100122 Silverstripe <= v2.3.4: two XSS vulnerabilities",
|
|
"refsource" : "FULLDISC",
|
|
"url" : "http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0450.html"
|
|
},
|
|
{
|
|
"name" : "http://groups.google.com/group/silverstripe-announce/browse_thread/thread/f51749342eee9456",
|
|
"refsource" : "CONFIRM",
|
|
"url" : "http://groups.google.com/group/silverstripe-announce/browse_thread/thread/f51749342eee9456"
|
|
},
|
|
{
|
|
"name" : "http://open.silverstripe.org/changeset/97074",
|
|
"refsource" : "CONFIRM",
|
|
"url" : "http://open.silverstripe.org/changeset/97074"
|
|
},
|
|
{
|
|
"name" : "http://open.silverstripe.org/wiki/ChangeLog/2.3.5",
|
|
"refsource" : "CONFIRM",
|
|
"url" : "http://open.silverstripe.org/wiki/ChangeLog/2.3.5"
|
|
},
|
|
{
|
|
"name" : "http://www.silverstripe.org/security-releases/",
|
|
"refsource" : "CONFIRM",
|
|
"url" : "http://www.silverstripe.org/security-releases/"
|
|
},
|
|
{
|
|
"name" : "37923",
|
|
"refsource" : "BID",
|
|
"url" : "http://www.securityfocus.com/bid/37923"
|
|
},
|
|
{
|
|
"name" : "61921",
|
|
"refsource" : "OSVDB",
|
|
"url" : "http://osvdb.org/61921"
|
|
},
|
|
{
|
|
"name" : "61923",
|
|
"refsource" : "OSVDB",
|
|
"url" : "http://osvdb.org/61923"
|
|
},
|
|
{
|
|
"name" : "38290",
|
|
"refsource" : "SECUNIA",
|
|
"url" : "http://secunia.com/advisories/38290"
|
|
},
|
|
{
|
|
"name" : "38347",
|
|
"refsource" : "SECUNIA",
|
|
"url" : "http://secunia.com/advisories/38347"
|
|
},
|
|
{
|
|
"name" : "silverstripe-comment-xss(55838)",
|
|
"refsource" : "XF",
|
|
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/55838"
|
|
},
|
|
{
|
|
"name" : "silverstripe-search-xss(55839)",
|
|
"refsource" : "XF",
|
|
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/55839"
|
|
}
|
|
]
|
|
}
|
|
}
|