~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2014-5313

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2014-5313
2
 
PublicDate: 2014-09-10
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-5313
5
 
 http://jvndb.jvn.jp/jvndb/JVNDB-2014-000104
6
 
 http://jvn.jp/en/jp/JVN73357573/index.html
7
 
 http://jvn.jp/en/jp/JVN73357573/370331/index.html
8
 
Description:
9
 
 Cross-site scripting (XSS) vulnerability in the management page in Six
10
 
 Apart Movable Type before 5.2 allows remote authenticated users to inject
11
 
 arbitrary web script or HTML via unspecified vectors.
12
 
Ubuntu-Description:
13
 
Notes:
14
 
Bugs:
15
 
Priority: medium
16
 
Discovered-by:
17
 
Assigned-to:
18
 
 
19
 
Patches_movabletype-opensource:
20
 
upstream_movabletype-opensource: released (5.2)
21
 
lucid_movabletype-opensource: ignored (reached end-of-life)
22
 
precise_movabletype-opensource: ignored (reached end-of-life)
23
 
precise/esm_movabletype-opensource: DNE (precise was needs-triage)
24
 
trusty_movabletype-opensource: not-affected (5.2.9+dfsg-1)
25
 
utopic_movabletype-opensource: not-affected
26
 
vivid_movabletype-opensource: DNE
27
 
vivid/stable-phone-overlay_movabletype-opensource: DNE
28
 
vivid/ubuntu-core_movabletype-opensource: DNE
29
 
wily_movabletype-opensource: DNE
30
 
xenial_movabletype-opensource: DNE
31
 
yakkety_movabletype-opensource: DNE
32
 
zesty_movabletype-opensource: DNE
33
 
devel_movabletype-opensource: DNE