mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-08-04 08:44:25 +00:00
97 lines
3.3 KiB
JSON
97 lines
3.3 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "cve@mitre.org",
|
|
"ID": "CVE-2009-1408",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "n/a",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name": "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Cross-site scripting (XSS) vulnerability in webSPELL 4.2.0c allows remote attackers to inject arbitrary web script or HTML allows remote attackers to inject arbitrary web script or HTML via Javascript events such as onmouseover in nested BBcode tags, as demonstrated using (1) email, (2) img, and (3) url tags."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"name": "53782",
|
|
"refsource": "OSVDB",
|
|
"url": "http://osvdb.org/53782"
|
|
},
|
|
{
|
|
"name": "8453",
|
|
"refsource": "EXPLOIT-DB",
|
|
"url": "https://www.exploit-db.com/exploits/8453"
|
|
},
|
|
{
|
|
"name": "34764",
|
|
"refsource": "SECUNIA",
|
|
"url": "http://secunia.com/advisories/34764"
|
|
},
|
|
{
|
|
"name": "http://www.webspell.org/index.php?site=news_comments&newsID=126&lang=uk",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://www.webspell.org/index.php?site=news_comments&newsID=126&lang=uk"
|
|
},
|
|
{
|
|
"name": "34595",
|
|
"refsource": "BID",
|
|
"url": "http://www.securityfocus.com/bid/34595"
|
|
},
|
|
{
|
|
"name": "20090416 webSPELL 4.2.0c XSS (BYPASS BBCODE) COOKIES STEALING VULNERABILITY",
|
|
"refsource": "BUGTRAQ",
|
|
"url": "http://www.securityfocus.com/archive/1/502732/100/0/threaded"
|
|
},
|
|
{
|
|
"name": "http://www.webspell.org/index.php?site=files&file=25",
|
|
"refsource": "CONFIRM",
|
|
"url": "http://www.webspell.org/index.php?site=files&file=25"
|
|
},
|
|
{
|
|
"name": "webspell-bbcode-xss(49937)",
|
|
"refsource": "XF",
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/49937"
|
|
}
|
|
]
|
|
}
|
|
} |