CVE-2015-1159
EPSS 58.8%發布日:2015/6/26修改日:2026/4/28
描述
Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.
受影響套件(1)
- Debian/cupsfrom 0, < 1.7.5-12