Candidate: CVE-2008-2236 PublicDate: 2008-10-03 15:07:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2236 Description: Cross-site scripting (XSS) vulnerability in blosxom.cgi in Blosxom before 2.1.2 allows remote attackers to inject arbitrary web script or HTML via the flav parameter (flavour variable). NOTE: some of these details are obtained from third party information. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_blosxom: upstream_blosxom: released (2.1.2) dapper_blosxom: ignored (reached end-of-life) feisty_blosxom: needed (reached end-of-life) gutsy_blosxom: needed (reached end-of-life) hardy_blosxom: ignored (reached end-of-life) intrepid_blosxom: needed (reached end-of-life) jaunty_blosxom: not-affected (2.1.2-1) karmic_blosxom: not-affected (2.1.2-1) lucid_blosxom: not-affected (2.1.2-1) maverick_blosxom: not-affected (2.1.2-1) natty_blosxom: not-affected (2.1.2-1) oneiric_blosxom: not-affected (2.1.2-1) devel_blosxom: not-affected (2.1.2-1)