yocto ▾
›
master ▾
›
vulnerability
›
CVE-2012-1293
Component Overview
Vulnerability Overview
Name
CVE-2012-1293
Source
NVD (
link
)
Debian (
link
)
Description
Multiple cross-site scripting (XSS) vulnerabilities in fup in Frams' Fast File EXchange (F*EX, aka fex) before 20111129-2 allow remote attackers to inject arbitrary web script or HTML via the (1) to or (2) from parameters.
CWEs
CWE-79
Published Date
Sep 25, 2012
Updated Date
Jun 16, 2026
Workaround
-
Advisories
http://fex.rus.uni-stuttgart.de/fex.html
Patch
http://secunia.com/advisories/47971
Vendor Advisory
http://www.openwall.com/lists/oss-security/2012/02/20/1
Exploit
http://fex.rus.uni-stuttgart.de/fex.html
Patch
http://secunia.com/advisories/47971
Vendor Advisory
http://www.openwall.com/lists/oss-security/2012/02/20/1
Exploit
Analysis
#
Affected Component
Analysis
fex
False Positive
Vulnerability Rating
#
4.3
CVSSv2