Oval Definition:oval:com.ubuntu.cosmic:def:201223640000000
Revision Date:2012-07-20Version:1
Title:CVE-2012-2364 on Ubuntu 18.10 (cosmic) - medium.
Description:Cross-site scripting (XSS) vulnerability in lib/filelib.php in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenticated users to inject arbitrary web script or HTML via an assignment submission with zip compression, leading to text/html rendering during a "download all" action.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-2364
Platform(s):Ubuntu 18.10
Product(s):
Definition Synopsis
  • Ubuntu 18.10 (cosmic) is installed.
  • AND moodle package in cosmic, is related to the CVE in some way and has been fixed (note: '2.5.4-1ubuntu1').
  • BACK