First published: Fri May 07 2010(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in JumpBox before 1.1.2 for Foswiki Wiki System allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Jumpbox | <=1.1.1 | |
Jumpbox | =1.1.0 | |
Foswiki |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4853 has been rated as a high severity cross-site scripting vulnerability.
To fix CVE-2009-4853, upgrade JumpBox to version 1.1.2 or later.
CVE-2009-4853 affects JumpBox versions prior to 1.1.2, specifically versions 1.1.0 and earlier.
Yes, CVE-2009-4853 can allow remote attackers to inject scripts that may lead to data theft.
No, Foswiki is not affected by CVE-2009-4853 as it does not utilize the vulnerable JumpBox versions.