CVE-2012-5490: XSS
Cross-site scripting (XSS) vulnerability in kssdevel.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Other sources
Cross-site scripting (XSS) vulnerability in kssdevel.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5490?
CVE-2012-5490 has a medium severity rating due to its potential for exploitation via cross-site scripting (XSS) vulnerabilities.
How do I fix CVE-2012-5490?
To fix CVE-2012-5490, upgrade Plone to version 4.2.3 or later.
Which versions are affected by CVE-2012-5490?
CVE-2012-5490 affects Plone versions prior to 4.2.3 and 4.3 before beta 1.
Can CVE-2012-5490 be exploited remotely?
Yes, CVE-2012-5490 can be exploited by remote attackers via unspecified vectors.
What type of vulnerability is CVE-2012-5490?
CVE-2012-5490 is classified as a cross-site scripting (XSS) vulnerability.