Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1685

Опубликовано: 22 апр. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.6

Описание

Best Practical Solutions RT 3.8.0 through 3.8.9 and 4.0.0rc through 4.0.0rc7, when the CustomFieldValuesSources (aka external custom field) option is enabled, allows remote authenticated users to execute arbitrary code via unspecified vectors, as demonstrated by a cross-site request forgery (CSRF) attack.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

hardy

DNE

karmic

ignored

end of life
lucid

released

3.8.7-1ubuntu2.2
maverick

released

3.8.8-4ubuntu0.1
natty

released

3.8.10-1
oneiric

not-affected

upstream

released

3.8.10

Показывать по

Ссылки на источники

EPSS

Процентиль: 78%
0.01122
Низкий

4.6 Medium

CVSS2

Связанные уязвимости

nvd
больше 14 лет назад

Best Practical Solutions RT 3.8.0 through 3.8.9 and 4.0.0rc through 4.0.0rc7, when the CustomFieldValuesSources (aka external custom field) option is enabled, allows remote authenticated users to execute arbitrary code via unspecified vectors, as demonstrated by a cross-site request forgery (CSRF) attack.

debian
больше 14 лет назад

Best Practical Solutions RT 3.8.0 through 3.8.9 and 4.0.0rc through 4. ...

github
больше 3 лет назад

Best Practical Solutions RT 3.8.0 through 3.8.9 and 4.0.0rc through 4.0.0rc7, when the CustomFieldValuesSources (aka external custom field) option is enabled, allows remote authenticated users to execute arbitrary code via unspecified vectors, as demonstrated by a cross-site request forgery (CSRF) attack.

EPSS

Процентиль: 78%
0.01122
Низкий

4.6 Medium

CVSS2