Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-4511

Опубликовано: 22 окт. 2012
Источник: nvd
CVSS2: 5.8
EPSS Низкий

Описание

services/flickr/flickr.c in libsocialweb before 0.25.21 automatically connects to Flickr when no Flickr account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gnome:libsocialweb:*:*:*:*:*:*:*:*
Версия до 0.25.20 (включая)
cpe:2.3:a:gnome:libsocialweb:0.25.0:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.1:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.2:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.3:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.4:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.5:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.6:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.7:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.8:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.9:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.10:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.11:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.12:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.13:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.14:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.15:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.16:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.17:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.18:*:*:*:*:*:*:*
cpe:2.3:a:gnome:libsocialweb:0.25.19:*:*:*:*:*:*:*

EPSS

Процентиль: 72%
0.00724
Низкий

5.8 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 13 лет назад

services/flickr/flickr.c in libsocialweb before 0.25.21 automatically connects to Flickr when no Flickr account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.

debian
больше 13 лет назад

services/flickr/flickr.c in libsocialweb before 0.25.21 automatically ...

github
больше 3 лет назад

services/flickr/flickr.c in libsocialweb before 0.25.21 automatically connects to Flickr when no Flickr account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.

EPSS

Процентиль: 72%
0.00724
Низкий

5.8 Medium

CVSS2

Дефекты

CWE-200