CVE-2010-3871

CVSS 4.3 - MEDIUM
Description

Cross-site scripting (XSS) vulnerability in blocktype/groupviews/theme/raw/groupviews.tpl in Mahara before 1.3.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: some of these details are obtained from third party information.

Affected Products
50 of 62
Vendor Product Version
mahara mahara All versions
mahara mahara 0.9.0
mahara mahara 0.9.1
mahara mahara 0.9.2
mahara mahara 1.0.0
mahara mahara 1.0.1
mahara mahara 1.0.2
mahara mahara 1.0.3
mahara mahara 1.0.4
mahara mahara 1.0.5
mahara mahara 1.0.6
mahara mahara 1.0.7
mahara mahara 1.0.8
mahara mahara 1.0.9
mahara mahara 1.0.10
mahara mahara 1.0.11
mahara mahara 1.0.12
mahara mahara 1.0.13
mahara mahara 1.0.14
mahara mahara 1.0.15
mahara mahara 1.1
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.0
mahara mahara 1.1.1
mahara mahara 1.1.2
mahara mahara 1.1.3
mahara mahara 1.1.4
mahara mahara 1.1.5
mahara mahara 1.1.6
mahara mahara 1.1.7
mahara mahara 1.1.8
mahara mahara 1.1.9
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.1
Showing first 50 of 62 affected products.
Weakness Types
CWE-79
CVE Information
CVE ID:
CVE-2010-3871
Published:
2010-11-09
Modified:
2026-04-29
CVSS Score:
4.3
Severity:
MEDIUM
Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N
Affected Vendors
mahara
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL