Candidate: CVE-2008-4634 PublicDate: 2008-10-21 01:18:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-4634 Description: Cross-site scripting (XSS) vulnerability in Movable Type 4 through 4.21 allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to the administrative page, a different vulnerability than CVE-2008-4079. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_movabletype-opensource: upstream_movabletype-opensource: released (4.2.1-3) dapper_movabletype-opensource: DNE gutsy_movabletype-opensource: DNE hardy_movabletype-opensource: DNE intrepid_movabletype-opensource: needed (reached end-of-life) jaunty_movabletype-opensource: not-affected (4.2.3-1) karmic_movabletype-opensource: not-affected devel_movabletype-opensource: not-affected