CVE-2014-2236
05.03.2014, 16:37
Multiple cross-site scripting (XSS) vulnerabilities in Askbot before 0.7.49 allow remote attackers to inject arbitrary web script or HTML via vectors related to the (1) tag or (2) user search forms.
| Vendor | Product | Version |
|---|---|---|
| askbot | askbot | 𝑥 ≤ 0.7.48 |
| askbot | askbot | 0.7.40 |
| askbot | askbot | 0.7.41 |
| askbot | askbot | 0.7.42 |
| askbot | askbot | 0.7.43 |
| askbot | askbot | 0.7.44 |
| askbot | askbot | 0.7.45 |
| askbot | askbot | 0.7.46 |
| askbot | askbot | 0.7.47 |
𝑥
= Vulnerable software versions
References