Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Mauro Gentile

#26653of 53,633
9.6Total CVSS
Vulnerabilities · 2
Medium
2
PT-2014-2329
5.3
2014-09-30
Plone Foundation · Plone · CVE-2012-5502
**Name of the Vulnerable Software and Affected Versions** Plone versions prior to 4.2.3 Plone version 4.3 before beta 1 **Description** A cross-site scripting (XSS) issue allows remote authenticated users with permissions to edit content to inject arbitrary web script or HTML. **Recommendations** For Plone versions prior to 4.2.3, update to version 4.2.3 or later. For Plone version 4.3 before beta 1, update to beta 1 or later.
PT-2011-3887
4.3
2011-12-01
Adobe · Flex Sdk · CVE-2011-2461
**Name of the Vulnerable Software and Affected Versions** Adobe Flex SDK versions 3.x through 4.5 **Description** The issue is related to a cross-site scripting (XSS) vulnerability that allows remote attackers to inject arbitrary web script or HTML. This is achieved through vectors related to the loading of modules from different domains. **Recommendations** For Adobe Flex SDK versions 3.x through 4.5, update to version 4.6 or later to resolve the issue.