oval:org.mitre.oval:def:13448

Definition Id: oval:org.mitre.oval:def:13448
 
Oval ID: oval:org.mitre.oval:def:13448
Title: DSA-1924-1 mahara -- several vulnerabilities
Description: Two vulnerabilities have been discovered in, an electronic portfolio, weblog, and resume builder. The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2009-3298 Ruslan Kabalin discovered a issue with resetting passwords, which could lead to a privilege escalation of an institutional administrator account. CVE-2009-3299 Sven Vetsch discovered a cross-site scripting vulnerability via the resume fields. For the stable distribution, these problems have been fixed in version 1.0.4-4+lenny4. The oldstable distribution does not contain mahara. For the testing distribution and the unstable distribution, this problem will be fixed soon. We recommend that you upgrade your mahara packages.
Family: unix Class: patch
Reference(s): DSA-1924-1
CVE-2009-3298
CVE-2009-3299
Version: 5
Platform(s): Debian GNU/Linux 5.0
Product(s): mahara
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:6513
 
Oval ID: oval:org.mitre.oval:def:6513
Title: Debian GNU/Linux 5.0 is installed
Description: Debian GNU/Linux 5.0 (lenny) is installed
Family: unix Class: inventory
Reference(s): cpe:/o:debian:debian_gnu/linux:5.0
Version: 7
Platform(s): Debian GNU/Linux 5.0
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:13448