Description
The XMonad.Hooks.DynamicLog module in xmonad-contrib before 0.11.2 allows remote attackers to execute arbitrary commands via a web page title, which activates the commands when the user clicks on the xmobar window title, as demonstrated using an action tag.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2013-1474 | The XMonad.Hooks.DynamicLog module in xmonad-contrib before 0.11.2 allows remote attackers to execute arbitrary commands via a web page title, which activates the commands when the user clicks on the xmobar window title, as demonstrated using an action tag. |
References
History
No history.
Status: PUBLISHED
Assigner: debian
Published:
Updated: 2024-08-06T15:04:48.667Z
Reserved: 2013-01-26T00:00:00.000Z
Link: CVE-2013-1436
No data.
Status : Deferred
Published: 2014-10-06T23:55:05.530
Modified: 2025-04-12T10:46:40.837
Link: CVE-2013-1436
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD