CVE-2010-1625

Cross-site scripting (XSS) vulnerability in LXR Cross Referencer before 0.9.7 allows remote attackers to inject arbitrary web script or HTML via vectors related to the search body and the results page for a search, a different vulnerability than CVE-2009-4497 and CVE-2010-1448.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:malcom_box:lxr_cross_referencer:*:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.3:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.3.1:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.7:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.8:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.1:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.2:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.3:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.4:*:*:*:*:*:*:*
cpe:2.3:a:malcom_box:lxr_cross_referencer:0.9.5:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-06-24 12:30

Updated : 2024-02-04 17:54


NVD link : CVE-2010-1625

Mitre link : CVE-2010-1625

CVE.ORG link : CVE-2010-1625


JSON object : View

Products Affected

malcom_box

  • lxr_cross_referencer
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')