Oval Definition:oval:com.ubuntu.precise:def:20122364000
Revision Date:2012-07-20Version:1
Title:CVE-2012-2364 on Ubuntu 12.04 LTS (precise) - medium.
Description:Cross-site scripting (XSS) vulnerability in lib/filelib.php in Moodle 2.0.x before 2.0.9, 2.1.x before 2.1.6, and 2.2.x before 2.2.3 allows remote authenticated users to inject arbitrary web script or HTML via an assignment submission with zip compression, leading to text/html rendering during a "download all" action.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-2364
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND While related to the CVE in some way, the 'moodle' package in precise is not affected (note: '1.9.9.dfsg2-6').
  • BACK