DEBIAN-CVE-2005-4305

Source
https://security-tracker.debian.org/tracker/CVE-2005-4305
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2005-4305.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2005-4305
Upstream
Published
2005-12-17T00:03:00Z
Modified
2025-11-19T01:19:07.875815Z
Summary
[none]
Details

Cross-site scripting (XSS) vulnerability in Edgewall Trac 0.9, 0.9.1, and 0.9.2 allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly sanitized before it is returned in an error page.

References

Affected packages

Debian:13 / trac

Package

Name
trac
Purl
pkg:deb/debian/trac?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.9.3-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14 / trac

Package

Name
trac
Purl
pkg:deb/debian/trac?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.9.3-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}