CVE-2013-3372
Publication date 23 August 2013
Last updated 24 July 2024
Ubuntu priority
Description
Request Tracker (RT) 3.8.x before 3.8.17 and 4.0.x before 4.0.13 allows remote attackers to inject multiple Content-Disposition HTTP headers and possibly conduct cross-site scripting (XSS) attacks via unspecified vectors.
Status
Package | Ubuntu Release | Status |
---|---|---|
request-tracker4 | ||
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty | Not in release | |
request-tracker3.8 | ||
16.04 LTS xenial | Not in release | |
14.04 LTS trusty | Not in release | |