Candidate: CVE-2009-3299 PublicDate: 2009-11-03 16:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3299 Description: Cross-site scripting (XSS) vulnerability in the resume blocktype in Mahara before 1.0.13, and 1.1.x before 1.1.7, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/bugs/463083 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_mahara: upstream_mahara: released (1.1.7) dapper_mahara: DNE hardy_mahara: DNE intrepid_mahara: needed (reached end-of-life) jaunty_mahara: released (1.0.9-2ubuntu0.5) karmic_mahara: released (1.1.5-1ubuntu0.1) devel_mahara: released (1.1.5-1ubuntu1)