Flowplayer Flowplayer Flash 3.2.16 for Mahara

CPE Details

Flowplayer Flowplayer Flash 3.2.16 for Mahara
3.2.16
2020-02-24
14h25 +00:00
2020-02-24
14h25 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:flowplayer:flowplayer_flash:3.2.16:*:*:*:*:mahara:*:*

Informations

Vendor

flowplayer

Product

flowplayer_flash

Version

3.2.16

Target Software

mahara

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2011-3642 2020-02-08 14h46 +00:00 Cross-site scripting (XSS) vulnerability in Flowplayer Flash 3.2.7 through 3.2.16, as used in the News system (news) extension for TYPO3 and Mahara, allows remote attackers to inject arbitrary web script or HTML via the plugin configuration directive in a reference to an external domain plugin.
9.6
Critical
CVE-2013-7341 2014-03-22 00h00 +00:00 Multiple cross-site scripting (XSS) vulnerabilities in Flowplayer Flash before 3.2.17, as used in Moodle through 2.3.11, 2.4.x before 2.4.9, 2.5.x before 2.5.5, and 2.6.x before 2.6.2, allow remote attackers to inject arbitrary web script or HTML by (1) providing a crafted playerId or (2) referencing an external domain, a related issue to CVE-2013-7342.
4.3