CVE-2015-9251
Vulnerability Summary
Timeline
Description
jQuery before 3.0.0 is vulnerable to Cross-site Scripting (XSS) attacks when a cross-domain Ajax request is performed without the dataType option, causing text/javascript responses to be executed.
CVSS Metrics
- v3.0•MEDIUM•Score: 6.1CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
- v2.0•MEDIUM•Score: 4.3AV:N/AC:M/Au:N/C:N/I:P/A:N
EPSS Trends
Current EPSS score: 18.01%• Percentile: 95%
Techniques & Countermeasures
- CWE-79•Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Affected Systems
- RubyGems•jquery-rails
< 4.2.0
- Unknown•JQuery
< 3.0.0
- org.webjars.npm•jquery
< 1.12.2 | ≥ 1.12.3, < 3.0.0
- Npm•jquery
< 1.12.2 | ≥ 1.12.3, < 3.0.0
- NuGet•jquery
< 1.12.2 | ≥ 1.12.3, < 3.0.0
- oracle•agile_product_lifecycle_management_for_process
6.2.0.0 | 6.2.1.0 | 6.2.2.0 | 6.2.3.0 | 6.2.3.1
- oracle•banking_platform
2.6.0 | 2.6.1 | 2.6.2
- oracle•business_process_management_suite
11.1.1.9.0 | 12.1.3.0.0 | 12.2.1.3.0
- oracle•communications_converged_application_server
< 7.0.0.1
- oracle•communications_interactive_session_recorder
6.0 | 6.1 | 6.2
- oracle•communications_services_gatekeeper
< 6.1.0.4.0
- oracle•communications_webrtc_session_controller
< 7.2
- oracle•endeca_information_discovery_studio
3.1.0 | 3.2.0
- oracle•enterprise_manager_ops_center
12.2.2 | 12.3.3
- oracle•enterprise_operations_monitor
3.4 | 4.0
- oracle•financial_services_analytical_applications_infrastructure
≥ 7.3.3, ≤ 7.3.5 | ≥ 8.0.0, ≤ 8.0.7
- oracle•financial_services_asset_liability_management
≥ 8.0.4, ≤ 8.0.7
- oracle•financial_services_data_integration_hub
≥ 8.0.5, ≤ 8.0.7
- oracle•financial_services_funds_transfer_pricing
≥ 8.0.4, ≤ 8.0.7
- oracle•financial_services_hedge_management_and_ifrs_valuations
≥ 8.0.4, ≤ 8.0.7
- oracle•financial_services_liquidity_risk_management
≥ 8.0.2, ≤ 8.0.6
- oracle•financial_services_loan_loss_forecasting_and_provisioning
≥ 8.0.2, ≤ 8.0.7
- oracle•financial_services_market_risk_measurement_and_management
8.0.5 | 8.0.6
- oracle•financial_services_profitability_management
≥ 8.0.4, ≤ 8.0.6
- oracle•financial_services_reconciliation_framework
8.0.5 | 8.0.6
- oracle•fusion_middleware_mapviewer
12.2.1.3.0
- oracle•healthcare_foundation
7.1 | 7.2
- oracle•healthcare_translational_research
3.1.0
- oracle•hospitality_cruise_fleet_management
9.0.11
- oracle•hospitality_guest_access
4.2.0 | 4.2.1
- oracle•hospitality_materials_control
18.1
- oracle•hospitality_reporting_and_analytics
9.1.0
- oracle•insurance_insbridge_rating_and_underwriting
5.2 | 5.4 | 5.5
- oracle•jd_edwards_enterpriseone_tools
9.2
- oracle•jdeveloper
11.1.1.9.0 | 12.1.3.0.0 | 12.2.1.3.0
- oracle•oss_support_tools
19.1
- oracle•peoplesoft_enterprise_peopletools
8.55 | 8.56 | 8.57
- oracle•primavera_gateway
15.2 | 16.2 | 17.12
- oracle•primavera_unifier
≥ 17.1, ≤ 17.12 | 16.1 | 16.2 | 18.8
- oracle•real-time_scheduler
2.3.0
- oracle•retail_allocation
15.0.2
- oracle•retail_customer_insights
15.0 | 16.0
- oracle•retail_invoice_matching
15.0
- oracle•retail_sales_audit
15.0
- oracle•retail_workforce_management_software
1.60.9 | 1.64.0
- oracle•service_bus
12.1.3.0.0 | 12.2.1.3.0
- oracle•siebel_ui_framework
18.10 | 18.11
- oracle•utilities_framework
≥ 4.3.0.1, ≤ 4.3.0.4
- oracle•utilities_mobile_workforce_management
2.3.0
- oracle•webcenter_sites
11.1.1.8.0
Showing first 50 affected entries in server-rendered view.
References (57)
- http://www.securityfocus.com/bid/105658
- https://seclists.org/bugtraq/2019/May/18
- http://seclists.org/fulldisclosure/2019/May/11
- http://seclists.org/fulldisclosure/2019/May/10
- http://seclists.org/fulldisclosure/2019/May/13
- https://lists.apache.org/thread.html/54df3aeb4239b64b50b356f0ca6f986e3c4ca5b84c515dce077c7854%40%3Cuser.flink.apache.org%3E
- https://lists.apache.org/thread.html/10f0f3aefd51444d1198c65f44ffdf2d78ca3359423dbc1c168c9731%40%3Cdev.flink.apache.org%3E
- https://lists.apache.org/thread.html/17ff53f7999e74fbe3cc0ceb4e1c3b00b180b7c5afec8e978837bc49%40%3Cuser.flink.apache.org%3E
- https://lists.apache.org/thread.html/52bafac05ad174000ea465fe275fd3cc7bd5c25535a7631c0bc9bfb2%40%3Cuser.flink.apache.org%3E
- https://lists.apache.org/thread.html/ba79cf1658741e9f146e4c59b50aee56656ea95d841d358d006c18b6%40%3Ccommits.roller.apache.org%3E
- https://lists.apache.org/thread.html/b0656d359c7d40ec9f39c8cc61bca66802ef9a2a12ee199f5b0c1442%40%3Cdev.drill.apache.org%3E
- https://lists.apache.org/thread.html/519eb0fd45642dcecd9ff74cb3e71c20a4753f7d82e2f07864b5108f%40%3Cdev.drill.apache.org%3E
- https://lists.apache.org/thread.html/f9bc3e55f4e28d1dcd1a69aae6d53e609a758e34d2869b4d798e13cc%40%3Cissues.drill.apache.org%3E
- https://access.redhat.com/errata/RHSA-2020:0481
- https://access.redhat.com/errata/RHSA-2020:0729
- http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00041.html
- https://www.oracle.com/security-alerts/cpuapr2020.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html
- https://www.oracle.com/security-alerts/cpujul2020.html
- https://github.com/jquery/jquery/issues/2432
- https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html
- https://sw.aveva.com/hubfs/assets-2018/pdf/security-bulletin/SecurityBulletin_LFSec126.pdf
- https://github.com/jquery/jquery/pull/2588/commits/c254d308a7d3f1eac4d0b42837804cfffcba4bb2
- https://snyk.io/vuln/npm:jquery:20150627
- https://github.com/jquery/jquery/pull/2588
- https://ics-cert.us-cert.gov/advisories/ICSA-18-212-04
- https://github.com/jquery/jquery/commit/f60729f3903d17917dc351f3ac87794de379b0cc
- https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
- http://packetstormsecurity.com/files/152787/dotCMS-5.1.1-Vulnerable-Dependencies.html
- http://packetstormsecurity.com/files/153237/RetireJS-CORS-Issue-Script-Execution.html
- https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html
- https://www.tenable.com/security/tns-2019-08
- https://www.oracle.com/security-alerts/cpujan2020.html
- http://packetstormsecurity.com/files/156743/OctoberCMS-Insecure-Dependencies.html
- https://www.oracle.com/security-alerts/cpuoct2020.html
- https://kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44601
- https://security.netapp.com/advisory/ntap-20210108-0004/
- https://nvd.nist.gov/vuln/detail/CVE-2015-9251
- https://github.com/jquery/jquery/issues/2432#issuecomment-403761229
- https://github.com/jquery/jquery/commit/b078a62013782c7424a4a61a240c23c4c0b42614
- https://security.netapp.com/advisory/ntap-20210108-0004
- https://security.snyk.io/vuln/SNYK-DOTNET-JQUERY-450227
- https://web.archive.org/web/20200227030101/http://www.securityfocus.com/bid/105658
- https://github.com/jquery/jquery
- https://github.com/rails/jquery-rails/blob/master/CHANGELOG.md#420
- https://github.com/rails/jquery-rails/blob/v4.2.0/vendor/assets/javascripts/jquery3.js#L9377
- https://github.com/rails/jquery-rails/releases/tag/v4.2.0
- https://github.com/rubysec/ruby-advisory-db/blob/master/gems/jquery-rails/CVE-2015-9251.yml
- https://lists.apache.org/thread.html/10f0f3aefd51444d1198c65f44ffdf2d78ca3359423dbc1c168c9731@%3Cdev.flink.apache.org%3E
- https://lists.apache.org/thread.html/17ff53f7999e74fbe3cc0ceb4e1c3b00b180b7c5afec8e978837bc49@%3Cuser.flink.apache.org%3E
- https://lists.apache.org/thread.html/519eb0fd45642dcecd9ff74cb3e71c20a4753f7d82e2f07864b5108f@%3Cdev.drill.apache.org%3E
- https://lists.apache.org/thread.html/52bafac05ad174000ea465fe275fd3cc7bd5c25535a7631c0bc9bfb2@%3Cuser.flink.apache.org%3E
- https://lists.apache.org/thread.html/54df3aeb4239b64b50b356f0ca6f986e3c4ca5b84c515dce077c7854@%3Cuser.flink.apache.org%3E
- https://lists.apache.org/thread.html/b0656d359c7d40ec9f39c8cc61bca66802ef9a2a12ee199f5b0c1442@%3Cdev.drill.apache.org%3E
- https://lists.apache.org/thread.html/ba79cf1658741e9f146e4c59b50aee56656ea95d841d358d006c18b6@%3Ccommits.roller.apache.org%3E
- https://lists.apache.org/thread.html/f9bc3e55f4e28d1dcd1a69aae6d53e609a758e34d2869b4d798e13cc@%3Cissues.drill.apache.org%3E