CVE-2010-0327: XSS
Published Jan 15, 2010
·Updated
Cross-site scripting (XSS) vulnerability in the KJ: Imagelightbox (kjimagelightbox2) extension 2.0.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2008-2490.
Affected Software
5 affected components
Julian Kleinhans Kj Imagelightbox2<=2.0.0
Julian Kleinhans Kj Imagelightbox2=1.4.0
Julian Kleinhans Kj Imagelightbox2=1.4.1
Julian Kleinhans Kj Imagelightbox2=1.4.2
Typo3 TYPO3
Remediation
Event History
Jan 15, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
07:30 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-0327?
CVE-2010-0327 has a moderate severity rating due to its potential impact on web security.
2
How do I fix CVE-2010-0327?
To fix CVE-2010-0327, upgrade the KJ: Imagelightbox extension to version 2.0.2 or later.
3
What versions are affected by CVE-2010-0327?
CVE-2010-0327 affects KJ: Imagelightbox versions 2.0.0 and earlier.
4
What type of vulnerability is CVE-2010-0327?
CVE-2010-0327 is a cross-site scripting (XSS) vulnerability.
5
Who is the vendor associated with CVE-2010-0327?
The vendor associated with CVE-2010-0327 is Julian Kleinhans, the developer of KJ: Imagelightbox.