CVE-2011-1405: XSS
Cross-site scripting (XSS) vulnerability in Mahara before 1.3.6 allows remote authenticated users to inject arbitrary web script or HTML via vectors associated with HTML e-mail messages, related to artefact/comment/lib.php and interaction/forum/lib.php.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1405?
CVE-2011-1405 is classified as a medium severity vulnerability due to the potential for XSS attacks.
How do I fix CVE-2011-1405?
To fix CVE-2011-1405, upgrade to Mahara version 1.3.6 or later where the vulnerability has been addressed.
Who is affected by CVE-2011-1405?
CVE-2011-1405 affects Mahara versions prior to 1.3.6, including various older releases.
What type of vulnerability is CVE-2011-1405?
CVE-2011-1405 is a cross-site scripting (XSS) vulnerability that allows users to inject arbitrary web scripts or HTML.
Can CVE-2011-1405 be exploited remotely?
Yes, CVE-2011-1405 can be exploited remotely by authenticated users to execute harmful scripts.