Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-0132
Description:Cross-site scripting (XSS) vulnerability in ViewVC 1.1 before 1.1.5 and 1.0 before 1.0.11, when the regular expression search functionality is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors related to "search_re input," a different vulnerability than CVE-2010-0736.
Test IDs: 1.3.6.1.4.1.25623.1.0.100562   1.3.6.1.4.1.25623.1.0.861853   1.3.6.1.4.1.25623.1.0.861858  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-0132
Bugtraq: 20100330 Secunia Research: ViewVC Regular Expression Search Cross-Site Scripting (Google Search)
http://www.securityfocus.com/archive/1/510408/100/0/threaded
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038420.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038456.html
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038925.html
http://secunia.com/secunia_research/2010-26/
http://secunia.com/advisories/38918
SuSE Security Announcement: SUSE-SR:2010:009 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00002.html
http://www.vupen.com/english/advisories/2010/0743
http://www.vupen.com/english/advisories/2010/0844




© 1998-2025 E-Soft Inc. All rights reserved.