ubuntu · CVE-2009-5145

Quick triage

Priority: medium Published: 2017-08-07 17:29:00 UTC Updated: 2025-08-25 19:53:02 UTC

View at Official ubuntu advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2009-5145 medium priority: Ubuntu including 1 source packages (zope2.13), 5 status rows across 5 suites (lucid, precise, trusty, upstream, utopic): DNE 3, not-affected 2.

Description:

Cross-site scripting (XSS) vulnerability in ZMI pages that use the manage_tabs_message in Zope 2.11.4, 2.11.2, 2.10.9, 2.10.7, 2.10.6, 2.10.5, 2.10.4, 2.10.2, 2.10.1, 2.12.

cvelogic Threat Intelligence