Ubuntu Security Notice (C) 2012-2013 Canonical, Inc. / NASL script (C) 2012-2013 Tenable Network Security, Inc.
The remote Ubuntu host is missing a security-related patch.
Justin C. Klein Keane discovered that the Transmission web client
incorrectly escaped certain strings. If a user were tricked into
opening a specially crafted torrent file, an attacker could possibly
exploit this to conduct cross-site scripting (XSS) attacks.
Update the affected transmission-common package.
Risk factor :
Low / CVSS Base Score : 2.6
CVSS Temporal Score : 2.1
Public Exploit Available : true