CVE-2011-0439

CVSS 4.3 - MEDIUM
Description

Cross-site scripting (XSS) vulnerability in Mahara 1.2.x before 1.2.7 and 1.3.x before 1.3.4 allows remote attackers to inject arbitrary web script or HTML via the Pieforms select box.

Affected Products
24
Vendor Product Version
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.0
mahara mahara 1.2.1
mahara mahara 1.2.2
mahara mahara 1.2.3
mahara mahara 1.2.4
mahara mahara 1.2.5
mahara mahara 1.2.6
mahara mahara 1.3.3
mahara mahara 1.3.0
mahara mahara 1.3.0
mahara mahara 1.3.0
mahara mahara 1.3.0
mahara mahara 1.3.0
mahara mahara 1.3.0
mahara mahara 1.3.1
mahara mahara 1.3.2
Weakness Types
CWE-79
CVE Information
CVE ID:
CVE-2011-0439
Published:
2011-03-28
Modified:
2026-04-29
CVSS Score:
4.3
Severity:
MEDIUM
Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N
Affected Vendors
mahara
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL