Lucene search

K
cvelistMozillaCVELIST:CVE-2013-1742
HistoryOct 24, 2013 - 10:00 a.m.

CVE-2013-1742

2013-10-2410:00:00
mozilla
www.cve.org
7
bugzilla
editflagtypes
xss
vulnerabilities
remote attackers
web script
html
parameters

AI Score

5.6

Confidence

High

EPSS

0.002

Percentile

56.2%

Multiple cross-site scripting (XSS) vulnerabilities in editflagtypes.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id or (2) sortkey parameter.

AI Score

5.6

Confidence

High

EPSS

0.002

Percentile

56.2%