Oval Definition:oval:com.ubuntu.precise:def:20153439000
Revision Date:2015-08-05Version:1
Title:CVE-2015-3439 on Ubuntu 12.04 LTS (precise) - low.
Description:Cross-site scripting (XSS) vulnerability in the Ephox (formerly Moxiecode) plupload.flash.swf shim 2.1.2 in Plupload, as used in WordPress 3.9.x, 4.0.x, and 4.1.x before 4.1.2 and other products, allows remote attackers to execute same-origin JavaScript functions via the target parameter, as demonstrated by executing a certain click function, related to _init.as and _fireEvent.as.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-3439
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND While related to the CVE in some way, the 'wordpress' package in precise is not affected.
  • BACK