Oval Definition:oval:com.ubuntu.artful:def:20153439000
Revision Date:2015-08-05Version:1
Title:CVE-2015-3439 on Ubuntu 17.10 (artful) - low.
Description:Cross-site scripting (XSS) vulnerability in the Ephox (formerly Moxiecode) plupload.flash.swf shim 2.1.2 in Plupload, as used in WordPress 3.9.x, 4.0.x, and 4.1.x before 4.1.2 and other products, allows remote attackers to execute same-origin JavaScript functions via the target parameter, as demonstrated by executing a certain click function, related to _init.as and _fireEvent.as.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-3439
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND The 'wordpress' package in artful is affected and needs fixing.
  • BACK