CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
SINGLE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
AV:N/AC:M/Au:S/C:N/I:P/A:N
AI Score
Confidence
High
EPSS
Percentile
44.4%
Multiple cross-site scripting (XSS) vulnerabilities in Samizdat before 0.6.2 allow remote authenticated users to inject arbitrary web script or HTML via the (1) message title or (2) user full name.
osvdb.org/52022
samizdat.nongnu.org/release-notes/samizdat-0.6.1-xss-escape-title.patch
www.mail-archive.com/debian-testing-security-announce%40lists.debian.org/msg00171.html
www.nongnu.org/samizdat/release-notes/samizdat-0.6.2.html
www.securityfocus.com/archive/1/500961/100/0/threaded
www.securityfocus.com/bid/33768