{"id":"CVE-2012-0869","details":"Cross-site scripting (XSS) vulnerability in fup in Frams' Fast File EXchange (F*EX, aka fex) before 20120215 allows remote attackers to inject arbitrary web script or HTML via the id parameter.","modified":"2026-04-10T03:42:13.158996Z","published":"2012-09-25T23:55:01Z","references":[{"type":"ADVISORY","url":"http://secunia.com/advisories/47971"},{"type":"ADVISORY","url":"http://www.debian.org/security/2012/dsa-2414"},{"type":"FIX","url":"http://fex.rus.uni-stuttgart.de/fex.html"},{"type":"WEB","url":"http://archives.neohapsis.com/archives/bugtraq/2012-02/0109.html"},{"type":"WEB","url":"http://archives.neohapsis.com/archives/bugtraq/2012-02/0112.html"},{"type":"WEB","url":"http://osvdb.org/79420"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/02/20/1"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/02/20/8"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2012/02/23/2"},{"type":"WEB","url":"http://www.securityfocus.com/bid/52085"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/78966"}],"schema_version":"1.7.5"}