Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-3960

Опубликовано: 04 июн. 2014
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Multiple cross-site scripting (XSS) vulnerabilities in OpenNMS before 1.12.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:opennms:opennms:*:*:*:*:*:*:*:*
Версия до 1.12.6 (включая)
cpe:2.3:a:opennms:opennms:1.9.0:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.1:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.2:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.3:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.4:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.5:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.6:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.7:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.8:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.90:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.91:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.92:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.9.93:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.0:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.1:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.2:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.3:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.4:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.5:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.6:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.7:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.8:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.9:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.10:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.11:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.12:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.13:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.10.14:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.0:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.1:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.2:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.3:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.90:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.91:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.92:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.93:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.11.94:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.12.0:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.12.1:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.12.2:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.12.3:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.12.4:*:*:*:*:*:*:*
cpe:2.3:a:opennms:opennms:1.12.5:*:*:*:*:*:*:*

EPSS

Процентиль: 48%
0.00254
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

debian
больше 11 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in OpenNMS before ...

github
больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in OpenNMS before 1.12.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

EPSS

Процентиль: 48%
0.00254
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79