Candidate: CVE-2009-0487 PublicDate: 2009-02-09 20:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0487 Description: Cross-site scripting (XSS) vulnerability in Mahara before 1.0.9 allows remote attackers to inject arbitrary web script or HTML via a crafted forum post. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_mahara: upstream_mahara: released (1.0.9) dapper_mahara: DNE gutsy_mahara: DNE hardy_mahara: DNE intrepid_mahara: needed (reached end-of-life) jaunty_mahara: not-affected (1.0.9-2ubuntu0.2) karmic_mahara: not-affected (1.0.9-2ubuntu0.2) devel_mahara: not-affected (1.0.9-2ubuntu0.2)