VendorsMalcom Boxlxr_cross_referencer0.9.6
Vulnerabilities

Malcom Box Lxr Cross Referencer 0.9.6

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2009-4497
Cross-site scripting (XSS) vulnerability in LXR Cross Referencer 0.9.5 and 0.9.6 allows remote attackers to inject arbitrary web script or HTML via the i parameter to the ident program.
Published 2010-01-07 · Modified
4.31 PoCEPSS 0.032
CVE-2010-1448
Cross-site scripting (XSS) vulnerability in lib/LXR/Common.pm in LXR Cross Referencer before 0.9.8 allows remote attackers to inject arbitrary web script or HTML via vectors related to a string in the search page's TITLE element, a different vulnerability than CVE-2009-4497 and CVE-2010-1625.
Published 2010-06-23 · Modified
4.3EPSS 0.025