Candidate: CVE-2009-0934 PublicDate: 2009-03-18 02:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0934 Description: Cross-site scripting (XSS) vulnerability in ejabberd before 2.0.4 allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to links and MUC logs. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_ejabberd: upstream_ejabberd: released (2.0.5-1) dapper_ejabberd: ignored (reached end-of-life) gutsy_ejabberd: needs-triage (reached end-of-life) hardy_ejabberd: ignored (reached end-of-life) intrepid_ejabberd: needed (reached end-of-life) jaunty_ejabberd: ignored (reached end-of-life) karmic_ejabberd: not-affected (2.0.5-1.1) lucid_ejabberd: not-affected maverick_ejabberd: not-affected natty_ejabberd: not-affected oneiric_ejabberd: not-affected devel_ejabberd: not-affected