Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-2662

Опубликовано: 19 июл. 2012
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

Multiple cross-site scripting (XSS) vulnerabilities in Red Hat Certificate System (RHCS) before 8.1.1 and Dogtag Certificate System allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to the (1) System Agent or (2) End Entity pages.

Multiple cross-site scripting flaws were discovered in the Red Hat Certificate System Agent and End Entity pages. An attacker could use these flaws to perform a cross-site scripting (XSS) attack against victims using the Certificate System's web interface.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7pki-coreWill not fix
Red Hat Certificate System 8pki-commonFixedRHSA-2012:110319.07.2012
Red Hat Certificate System 8pki-tpsFixedRHSA-2012:110319.07.2012
Red Hat Certificate System 8pki-utilFixedRHSA-2012:110319.07.2012
Red Hat Enterprise Linux 6pki-coreFixedRHSA-2015:134720.07.2015

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-79

EPSS

Процентиль: 47%
0.00238
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
около 13 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Red Hat Certificate System (RHCS) before 8.1.1 and Dogtag Certificate System allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to the (1) System Agent or (2) End Entity pages.

github
больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Red Hat Certificate System (RHCS) before 8.1.1 and Dogtag Certificate System allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to the (1) System Agent or (2) End Entity pages.

oracle-oval
около 10 лет назад

ELSA-2015-1347: pki-core security and bug fix update (MODERATE)

EPSS

Процентиль: 47%
0.00238
Низкий

4.3 Medium

CVSS2