Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-0244
HistoryJan 19, 2014 - 12:00 a.m.

CVE-2013-0244

2014-01-1900:00:00
ubuntu.com
ubuntu.com
16

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

0.003 Low

EPSS

Percentile

69.9%

Cross-site scripting (XSS) vulnerability in Drupal 6.x before 6.28 and 7.x
before 7.19, when running with older versions of jQuery that are vulnerable
to CVE-2011-4969, allows remote attackers to inject arbitrary web script or
HTML via vectors involving unspecified Javascript functions that are used
to select DOM elements.

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

0.003 Low

EPSS

Percentile

69.9%