CVE-2009-5145

Cross-site scripting (XSS) vulnerability in ZMI pages that use the manage_tabs_message in Zope 2.11.4, 2.11.2, 2.10.9, 2.10.7, 2.10.6, 2.10.5, 2.10.4, 2.10.2, 2.10.1, 2.12.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:zope:zope:2.10.1:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.10.2:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.10.4:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.10.5:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.10.6:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.10.7:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.10.9:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.11.2:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.11.4:*:*:*:*:*:*:*
cpe:2.3:a:zope:zope:2.12.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-08-07 17:29

Updated : 2023-12-10 12:15


NVD link : CVE-2009-5145

Mitre link : CVE-2009-5145

CVE.ORG link : CVE-2009-5145


JSON object : View

Products Affected

zope

  • zope
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')