Vulnerability Manager Plus
Free Trial
  • Overview
  • Features
  • Demo
  • Documents
  • Get Quote
  • Support
Home
 

pythonic binding for the libxml2 and libxslt libraries (USN-2217-1) python-lxml_3.3.3-1ubuntu0.2_amd64.deb

Risk Information

Base Score
6.1
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Base Score
4.0
MODERATE
Vector
I:P/AV:N/Au:N/AC:M/A:N/C:N
EPSS Score
Exploitation Probability
4.268%

CVE Information

Source CVE
CVE-2014-3146

Associated CVE
CVE-2014-3146

Patch Details

No records found

References

http://advisories.mageia.org/MGASA-2014-0218.html
http://lists.opensuse.org/opensuse-updates/2014-05/msg00083.html
http://lxml.de/3.3/changes-3.3.5.html
http://seclists.org/fulldisclosure/2014/Apr/210
http://seclists.org/fulldisclosure/2014/Apr/319
http://secunia.com/advisories/58013
http://secunia.com/advisories/58744
http://secunia.com/advisories/59008
http://www.debian.org/security/2014/dsa-2941
http://www.openwall.com/lists/oss-security/2014/05/09/7
http://www.securityfocus.com/bid/67159
http://www.ubuntu.com/usn/USN-2217-1
https://mailman-mail5.webfaction.com/pipermail/lxml/2014-April/007128.html

Details

CWE ID
CWE-287
CWE Type
Cross site scripting (XSS)
Vulnerability ID
25827
Published
2014-05-14
Updated
2026-02-27

Vulnerability Intelligence

Evaluate vulnerabilities across managed endpoints with enriched threat intelligence and risk context such as:

Risk Score
Emerging Risk Catalog
CERT Advisories
Risk Indicators