Lucene search

K
ubuntucveUbuntu.comUB:CVE-2004-1735
HistoryAug 21, 2004 - 12:00 a.m.

CVE-2004-1735

2004-08-2100:00:00
ubuntu.com
ubuntu.com
11

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.003

Percentile

69.1%

Cross-site scripting (XSS) vulnerability in the create list option in Sympa
4.1.x and earlier allows remote authenticated users to inject arbitrary web
script or HTML via the description field.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchsympa< 4.1.5-7UNKNOWN
ubuntu6.10noarchsympa< 4.1.5-7UNKNOWN
ubuntu7.04noarchsympa< 4.1.5-7UNKNOWN

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.003

Percentile

69.1%

Related for UB:CVE-2004-1735