CVE-2015-6253: XSS
Published Jul 29, 2019
·Updated
edx-platform before 2015-08-17 allows XSS in the Studio listing of courses.
Affected Software
1 affected component
edx edx-platform<2015-08-17
Remediation
Patch Available
Event History
Jul 29, 2019
CVE Published
via MITRE·03:36 PM
Data Sourced
via MITRE·03:36 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6253?
CVE-2015-6253 is classified as a medium severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2015-6253?
To fix CVE-2015-6253, upgrade the edx-platform to version 2015-08-17 or later.
3
What type of vulnerability is CVE-2015-6253?
CVE-2015-6253 is a cross-site scripting (XSS) vulnerability that affects the course listing in edx-platform.
4
Which versions of edx-platform are affected by CVE-2015-6253?
Versions of edx-platform prior to 2015-08-17 are affected by CVE-2015-6253.
5
Can CVE-2015-6253 be exploited remotely?
Yes, CVE-2015-6253 can be exploited remotely, allowing attackers to inject malicious scripts into web pages.