CVE-2011-4090: XSS
Published Nov 26, 2019
·Updated
Serendipity before 1.6 has an XSS issue in the karma plugin which may allow privilege escalation.
Affected Software
2 affected components
debian/serendipity
S9Y serendipity<1.6
Event History
Nov 26, 2019
CVE Published
via MITRE·04:09 AM
Data Sourced
via MITRE·04:09 AM
DescriptionWeakness
Aug 7, 2024
Data Sourced
via Debian·12:01 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-4090?
CVE-2011-4090 is classified as a medium severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2011-4090?
To fix CVE-2011-4090, upgrade your Serendipity installation to version 1.6 or later.
3
What type of vulnerability is CVE-2011-4090?
CVE-2011-4090 is an XSS (Cross-Site Scripting) vulnerability affecting the karma plugin in Serendipity.
4
Which versions of Serendipity are affected by CVE-2011-4090?
CVE-2011-4090 affects all versions of Serendipity prior to 1.6.
5
Is there a workaround for CVE-2011-4090?
No official workaround exists for CVE-2011-4090; upgrading is the recommended solution.