Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-0481
HistoryFeb 09, 2009 - 12:00 a.m.

CVE-2009-0481

2009-02-0900:00:00
ubuntu.com
ubuntu.com
16

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

EPSS

0.001

Percentile

41.5%

Bugzilla 2.x before 2.22.7, 3.0 before 3.0.7, 3.2 before 3.2.1, and 3.3
before 3.3.2 allows remote authenticated users to conduct cross-site
scripting (XSS) and related attacks by uploading HTML and JavaScript
attachments that are rendered by web browsers.

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

EPSS

0.001

Percentile

41.5%