Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-2276

Опубликовано: 15 июн. 2010
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

The default configuration of the build process in Dojo 0.4.x before 0.4.4, 1.0.x before 1.0.3, 1.1.x before 1.1.2, 1.2.x before 1.2.4, 1.3.x before 1.3.3, and 1.4.x before 1.4.2 has the copyTests=true and mini=false options, which makes it easier for remote attackers to have an unspecified impact via a request to a (1) test or (2) demo component.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:dojotoolkit:dojo:0.4.0:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:0.4.2:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:0.4.3:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.0:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.1:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.2:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.2.3:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.3:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.3.1:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.3.2:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.4:*:*:*:*:*:*:*
cpe:2.3:a:dojotoolkit:dojo:1.4.1:*:*:*:*:*:*:*

EPSS

Процентиль: 85%
0.02639
Низкий

10 Critical

CVSS2

Дефекты

CWE-16

Связанные уязвимости

ubuntu
больше 15 лет назад

The default configuration of the build process in Dojo 0.4.x before 0.4.4, 1.0.x before 1.0.3, 1.1.x before 1.1.2, 1.2.x before 1.2.4, 1.3.x before 1.3.3, and 1.4.x before 1.4.2 has the copyTests=true and mini=false options, which makes it easier for remote attackers to have an unspecified impact via a request to a (1) test or (2) demo component.

debian
больше 15 лет назад

The default configuration of the build process in Dojo 0.4.x before 0. ...

github
больше 3 лет назад

The default configuration of the build process in Dojo 0.4.x before 0.4.4, 1.0.x before 1.0.3, 1.1.x before 1.1.2, 1.2.x before 1.2.4, 1.3.x before 1.3.3, and 1.4.x before 1.4.2 has the copyTests=true and mini=false options, which makes it easier for remote attackers to have an unspecified impact via a request to a (1) test or (2) demo component.

EPSS

Процентиль: 85%
0.02639
Низкий

10 Critical

CVSS2

Дефекты

CWE-16