CVE-2013-6047

Multiple cross-site scripting (XSS) vulnerabilities in the site creation interface in ikiwiki-hosting before 0.20131025 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 51%
VendorProductVersion
ikiwiki_hosting_projectikiwiki_hosting
𝑥
≤ 0.20130926
ikiwiki_hosting_projectikiwiki_hosting
0.20110401
ikiwiki_hosting_projectikiwiki_hosting
0.20110420
ikiwiki_hosting_projectikiwiki_hosting
0.20110424
ikiwiki_hosting_projectikiwiki_hosting
0.20110515
ikiwiki_hosting_projectikiwiki_hosting
0.20110608
ikiwiki_hosting_projectikiwiki_hosting
0.20110926
ikiwiki_hosting_projectikiwiki_hosting
0.20111005
ikiwiki_hosting_projectikiwiki_hosting
0.20120125
ikiwiki_hosting_projectikiwiki_hosting
0.20120131
ikiwiki_hosting_projectikiwiki_hosting
0.20120425
ikiwiki_hosting_projectikiwiki_hosting
0.20120526
ikiwiki_hosting_projectikiwiki_hosting
0.20120527
ikiwiki_hosting_projectikiwiki_hosting
0.20130504
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
ikiwiki-hosting
bullseye
0.20180719-2
fixed
wheezy
no-dsa
bookworm
0.20220716-2
fixed
sid
0.20220717-1
fixed
trixie
0.20220717-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
ikiwiki-hosting
zesty
not-affected
yakkety
not-affected
xenial
not-affected
wily
not-affected
vivid
not-affected
utopic
not-affected
trusty
dne
saucy
ignored
raring
ignored
quantal
ignored
precise
ignored
lucid
dne