MidnightBSD

Advisories for ushahidi

CVE-2013-2025 MEDIUM

Cross-site scripting (XSS) vulnerability in Ushahidi Platform 2.5.x through 2.6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-79,

Products Affected

Vendor Product Version
ushahidi ushahidi_platform 2.5
ushahidi ushahidi_platform 2.6
ushahidi ushahidi_platform 2.6.1