~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
Candidate: CVE-2010-3314
PublicDate: 2010-09-22
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3314
Description:
 Cross-site scripting (XSS) vulnerability in login.php in EGroupware
 1.4.001+.002; 1.6.001+.002 and possibly other versions before 1.6.003; and
 EPL 9.1 before 9.1.20100309 and 9.2 before 9.2.20100309; allows remote
 attackers to inject arbitrary web script or HTML via the lang parameter.
Ubuntu-Description:
Notes:
Bugs:
Priority: medium
Discovered-by:
Assigned-to:

Patches_egroupware-egw-pear:
upstream_egroupware-egw-pear: released (1.6.003)
dapper_egroupware-egw-pear: DNE
hardy_egroupware-egw-pear: DNE
jaunty_egroupware-egw-pear: ignored (reached end-of-life)
karmic_egroupware-egw-pear: ignored (reached end-of-life)
lucid_egroupware-egw-pear: ignored (reached end-of-life)
maverick_egroupware-egw-pear: ignored (reached end-of-life)
natty_egroupware-egw-pear: DNE
oneiric_egroupware-egw-pear: DNE
precise_egroupware-egw-pear: DNE
quantal_egroupware-egw-pear: DNE
raring_egroupware-egw-pear: DNE
saucy_egroupware-egw-pear: DNE
devel_egroupware-egw-pear: DNE