PublicDateAtUSN: 2010-02-26 Candidate: CVE-2010-0669 PublicDate: 2010-02-26 19:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0669 https://ubuntu.com/security/notices/USN-911-1 Description: MoinMoin before 1.8.7 and 1.9.x before 1.9.2 does not properly sanitize user profiles, which has unspecified impact and attack vectors. Ubuntu-Description: Notes: jdstrand> upstream plans to backport to 1.7 and 1.8 only. Bugs: Priority: medium Discovered-by: Assigned-to: jdstrand CVSS: Patches_moin: upstream: 3888:232cad689a08 (1.7) upstream: 3889:970d94ea19f2 (1.7) upstream: 3890:a7838f68fbcd (1.7) upstream: 3891:1f638ed400a0 (1.7) upstream: 4478:232cad689a08 (1.8) upstream: 4479:970d94ea19f2 (1.8) upstream: 4480:a7838f68fbcd (1.8) upstream: 4488:1f638ed400a0 (1.8) upstream_moin: released (1.8.7, 1.9.2-1) dapper_moin: released (1.5.2-1ubuntu2.5) hardy_moin: released (1.5.8-5.1ubuntu2.3) intrepid_moin: released (1.7.1-1ubuntu1.3) jaunty_moin: released (1.8.2-2ubuntu2.2) karmic_moin: released (1.8.4-1ubuntu1.1) devel_moin: released (1.9.2-2ubuntu1)