CVE-2008-7220

Unspecified vulnerability in Prototype JavaScript framework (prototypejs) before 1.6.0.2 allows attackers to make "cross-site ajax requests" via unknown vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 94%
VendorProductVersion
prototypejsprototype
𝑥
< 1.6.0.2
debiandebian_linux
5.0
debiandebian_linux
6.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
asterisk
bullseye
1:16.28.0~dfsg-0+deb11u4
fixed
lenny
no-dsa
etch
no-dsa
bullseye (security)
1:16.28.0~dfsg-0+deb11u5
fixed
sid
1:22.0.0~dfsg+~cs6.14.60671435-1
fixed
exaile
sid
4.1.3+dfsg-3
fixed
trixie
4.1.3+dfsg-3
fixed
lenny
no-dsa
etch
no-dsa
jscropperui
bookworm
1.2.2-1.1
fixed
bullseye
1.2.2-1.1
fixed
lenny
no-dsa
etch
no-dsa
sid
1.2.2-2
fixed
trixie
1.2.2-2
fixed
libaws
bullseye
20.2-2
fixed
lenny
no-dsa
etch
no-dsa
libhtml-prototype-perl
bullseye
1.48-5.1
fixed
lenny
no-dsa
etch
no-dsa
sid
1.48-6
fixed
trixie
1.48-6
fixed
bookworm
1.48-6
fixed
otrs2
bullseye/non-free
6.0.32-6
fixed
lenny
no-dsa
etch
no-dsa
passenger
bullseye
5.0.30-1.2+deb11u1
fixed
lenny
no-dsa
etch
no-dsa
bookworm
6.0.17+ds-1
fixed
sid
6.0.20+ds-1
fixed
trixie
6.0.20+ds-1
fixed
prototypejs
bullseye
1.7.1-3.1
fixed
lenny
no-dsa
etch
no-dsa
sid
1.7.3-1
fixed
trixie
1.7.3-1
fixed
bookworm
1.7.3-1
fixed
scriptaculous
bullseye
1.9.0-2.1
fixed
lenny
no-dsa
etch
no-dsa
bookworm
1.9.0-3
fixed
sid
1.9.0-4
fixed
trixie
1.9.0-4
fixed
symfony
bullseye
4.4.19+dfsg-2+deb11u6
fixed
lenny
no-dsa
etch
no-dsa
bookworm
5.4.23+dfsg-1+deb12u2
fixed
sid
6.4.13+dfsg-1
fixed
trixie
6.4.13+dfsg-1
fixed
wordpress
bullseye (security)
5.7.11+dfsg1-0+deb11u1
fixed
bullseye
5.7.11+dfsg1-0+deb11u1
fixed
lenny
no-dsa
etch
no-dsa
bookworm
6.1.6+dfsg1-0+deb12u1
fixed
bookworm (security)
6.1.6+dfsg1-0+deb12u1
fixed
sid
6.6.1+dfsg1-1
fixed
trixie
6.6.1+dfsg1-1
fixed
zabbix
bullseye
1:5.0.8+dfsg-1
fixed
lenny
no-dsa
etch
no-dsa
bullseye (security)
1:5.0.44+dfsg-1+deb11u1
fixed
bookworm
1:6.0.14+dfsg-1
fixed
sid
1:7.0.5+dfsg-1
fixed
trixie
1:7.0.5+dfsg-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
prototypejs
jaunty
not-affected
intrepid
not-affected
hardy
dne
dapper
dne
References