CVE-2008-6838

Publication date 27 June 2009

Last updated 24 July 2024


Ubuntu priority

Cross-site scripting (XSS) vulnerability in search.php in Zoph 0.7.2.1 allows remote attackers to inject arbitrary web script or HTML via the _off parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Read the notes from the security team

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
zoph 9.10 karmic Ignored
9.04 jaunty Ignored
8.10 intrepid Ignored
8.04 LTS hardy Ignored
6.06 LTS dapper Ignored end of life

Notes


mdeslaur

upstream says this is a dupe of CVE-2008-3258