Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-4647
Description:Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) help/index.jsp or (2) help/advanced/content.jsp.
Test IDs: 1.3.6.1.4.1.25623.1.0.870642   1.3.6.1.4.1.25623.1.0.801745   1.3.6.1.4.1.25623.1.0.69650   1.3.6.1.4.1.25623.1.0.122170   1.3.6.1.4.1.25623.1.0.69057   1.3.6.1.4.1.25623.1.0.831332  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-4647
FEDORA-2010-18990
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052532.html
FEDORA-2010-19006
http://lists.fedoraproject.org/pipermail/package-announce/2010-December/052554.html
MDVSA-2011:032
http://www.mandriva.com/security/advisories?name=MDVSA-2011:032
RHSA-2011:0568
http://www.redhat.com/support/errata/RHSA-2011-0568.html
[oss-security] 20110106 CVE Request: Eclipse IDE Version: 3.6.1 | Help Server Local Cross Site Scripting (XSS)
http://openwall.com/lists/oss-security/2011/01/06/7
[oss-security] 20110106 Re: CVE Request: Eclipse IDE Version: 3.6.1 | Help Server Local Cross Site Scripting (XSS)
http://openwall.com/lists/oss-security/2011/01/06/16
eclipseide-querystring-xss(64833)
https://exchange.xforce.ibmcloud.com/vulnerabilities/64833
http://yehg.net/lab/pr0js/advisories/eclipse/%5Beclipse_help_server%5D_cross_site_scripting
http://yehg.net/lab/pr0js/advisories/eclipse/%5Beclipse_help_server%5D_cross_site_scripting
https://bugs.eclipse.org/bugs/show_bug.cgi?id=329582
https://bugs.eclipse.org/bugs/show_bug.cgi?id=329582




© 1998-2025 E-Soft Inc. All rights reserved.