CVE-2009-0487

CVSS 4.3 - MEDIUM
Description

Cross-site scripting (XSS) vulnerability in Mahara before 1.0.9 allows remote attackers to inject arbitrary web script or HTML via a crafted forum post.

Affected Products
12
Vendor Product Version
mahara mahara All versions
mahara mahara 0.9.0
mahara mahara 0.9.1
mahara mahara 0.9.2
mahara mahara 1.0.0
mahara mahara 1.0.1
mahara mahara 1.0.2
mahara mahara 1.0.3
mahara mahara 1.0.4
mahara mahara 1.0.5
mahara mahara 1.0.6
mahara mahara 1.0.7
Weakness Types
CWE-79
CVE Information
CVE ID:
CVE-2009-0487
Published:
2009-02-09
Modified:
2026-04-23
CVSS Score:
4.3
Severity:
MEDIUM
Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N
Affected Vendors
mahara
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL