CVE-2010-1707

Publication date 4 May 2010

Last updated 24 July 2024


Ubuntu priority

Multiple cross-site scripting (XSS) vulnerabilities in register.php in Piwigo 2.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) login and (2) mail_address parameters.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
piwigo 10.10 maverick
Fixed 2.0.10-1
10.04 LTS lucid Not in release
9.10 karmic Not in release
8.04 LTS hardy Not in release
6.06 LTS dapper Not in release