Oval Definition:oval:com.ubuntu.precise:def:20101614000
Revision Date:2010-04-29Version:1
Title:CVE-2010-1614 on Ubuntu 12.04 LTS (precise) - medium.
Description:Multiple cross-site scripting (XSS) vulnerabilities in Moodle 1.8.x before 1.8.12 and 1.9.x before 1.9.8 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) the Login-As feature or (2) when the global search feature is enabled, unspecified global search forms in the Global Search Engine. NOTE: vector 1 might be resultant from a cross-site request forgery (CSRF) vulnerability.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2010-1614
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND While related to the CVE in some way, the 'moodle' package in precise is not affected (note: '1.9.9.dfsg2-2').
  • BACK