Security Advisory

CVE-2011-1405

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2011-05-13 22:00:00
Last updated 2024-08-06 22:28:40
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Mahara before 1.3.6 allows remote authenticated users to inject arbitrary web script or HTML via vectors associated with HTML e-mail messages, related to artefact/comment/lib.php and interaction/forum/lib.php.