Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-0669
HistoryFeb 26, 2010 - 12:00 a.m.

CVE-2010-0669

2010-02-2600:00:00
ubuntu.com
ubuntu.com
10

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.01

Percentile

83.9%

MoinMoin before 1.8.7 and 1.9.x before 1.9.2 does not properly sanitize
user profiles, which has unspecified impact and attack vectors.

Notes

Author Note
jdstrand upstream plans to backport to 1.7 and 1.8 only.
OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchmoin< 1.5.2-1ubuntu2.5UNKNOWN
ubuntu8.04noarchmoin< 1.5.8-5.1ubuntu2.3UNKNOWN
ubuntu8.10noarchmoin< 1.7.1-1ubuntu1.3UNKNOWN
ubuntu9.04noarchmoin< 1.8.2-2ubuntu2.2UNKNOWN
ubuntu9.10noarchmoin< 1.8.4-1ubuntu1.1UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.01

Percentile

83.9%