CVE-2013-3736
Bestpractical Request Tracker < 1.02 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the MobileUI (aka RT-Extension-MobileUI) extension before 1.04 in Request Tracker (RT) 4.0.0 before 4.0.13 allows remote attackers to inject arbitrary web script or HTML via the name of an attached file.
References (4)
Scores
EPSS
0.0031
EPSS Percentile
53.9%
Details
CWE
CWE-79
Status
published
Products (15)
bestpractical/request_tracker
bestpractical/request_tracker
bestpractical/request_tracker
bestpractical/request_tracker
bestpractical/request_tracker
bestpractical/request_tracker
bestpractical/request_tracker
bestpractical/request_tracker
bestpractical/request_tracker
bestpractical/request_tracker
... and 5 more
Published
May 05, 2014
Tracked Since
Feb 18, 2026