CVE-2009-2492
17.07.2009, 16:30
Cross-site scripting (XSS) vulnerability in mt-wizard.cgi in Six Apart Movable Type before 4.261 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2009-2480.
| Vendor | Product | Version |
|---|---|---|
| six_apart | movable_type | 𝑥 ≤ 4.25 |
| six_apart | movable_type | 1.54 |
| six_apart | movable_type | 2.6 |
| six_apart | movable_type | 2.63 |
| six_apart | movable_type | 3.3 |
| six_apart | movable_type | 3.16 |
| six_apart | movable_type | 3.17 |
| six_apart | movable_type | 3.32 |
| six_apart | movable_type | 3.33 |
| six_apart | movable_type | 3.36 |
| six_apart | movable_type | 4.20 |
| six_apart | movable_type | 4.20 |
| six_apart | movable_type | 4.20 |
| six_apart | movable_type | 4.20 |
| six_apart_ltd | movable_type | * |
| six_apart_ltd | movable_type | 3.33 |
| sixapart | movable_type | 1.00 |
| sixapart | movable_type | 1.1 |
| sixapart | movable_type | 1.2 |
| sixapart | movable_type | 1.3 |
| sixapart | movable_type | 1.4 |
| sixapart | movable_type | 1.5 |
| sixapart | movable_type | 1.31 |
| sixapart | movable_type | 3.0d:d |
| sixapart | movable_type | 3.1 |
| sixapart | movable_type | 3.01d:d |
| sixapart | movable_type | 3.2 |
| sixapart | movable_type | 3.3 |
| sixapart | movable_type | 3.11 |
| sixapart | movable_type | 3.12 |
| sixapart | movable_type | 3.14 |
| sixapart | movable_type | 3.15 |
| sixapart | movable_type | 3.16 |
| sixapart | movable_type | 3.17 |
| sixapart | movable_type | 3.32 |
| sixapart | movable_type | 3.33 |
| sixapart | movable_type | 3.34 |
| sixapart | movable_type | 3.35 |
| sixapart | movable_type | 4.0 |
| sixapart | movable_type | 4.0 |
| sixapart | movable_type | 4.01 |
| sixapart | movable_type | 4.1 |
| sixapart | movable_type | 4.1 |
| sixapart | movable_type | 4.01 |
| sixapart | movable_type | 4.01:b |
| sixapart | movable_type | 4.01:b |
| sixapart | movable_type | 4.2 |
| sixapart | movable_type | 4.2 |
| sixapart | movable_type | 4.2 |
| sixapart | movable_type | 4.12 |
| sixapart | movable_type | 4.12 |
| sixapart | movable_type | 4.21 |
| sixapart | movable_type | 4.21 |
| sixapart | movable_type | 4.21 |
| sixapart | movable_type | 4.23 |
| sixapart | movable_type | 4.23 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References