Oval Definition:oval:com.ubuntu.cosmic:def:20122364000
Revision Date:2012-07-20Version:1
Title:CVE-2012-2364 on Ubuntu 18.10 (cosmic) - medium.
Description:Cross-site scripting (XSS) vulnerability in lib/filelib.php in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenticated users to inject arbitrary web script or HTML via an assignment submission with zip compression, leading to text/html rendering during a "download all" action.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-2364
Platform(s):Ubuntu 18.10
Product(s):
Definition Synopsis
  • Ubuntu 18.10 (cosmic) is installed.
  • AND NOT While related to the CVE in some way, the 'moodle' package in cosmic is not affected (note: '2.5.4-1ubuntu1').
  • BACK