CVE-2012-1410
Publication date 29 February 2012
Last updated 24 July 2024
Ubuntu priority
Description
Multiple cross-site scripting (XSS) vulnerabilities in the History Window implementation in Kadu 0.9.0 through 0.11.0 allow remote attackers to inject arbitrary web script or HTML via a crafted (1) SMS message, (2) presence message, or (3) status description.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| kadu | ||
Patch details
| Package | Patch details |
|---|---|
| kadu |