Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-4300

Опубликовано: 03 апр. 2019
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3
CVSS3: 5.9

Описание

The session cookie generated by the CUPS web interface was easy to guess on Linux, allowing unauthorized scripted access to the web interface when the web interface is enabled. This issue affected versions prior to v2.2.10.

РелизСтатусПримечание
bionic

released

2.2.7-1ubuntu2.2
cosmic

released

2.2.8-5ubuntu1.1
devel

not-affected

esm-infra-legacy/trusty

DNE

esm-infra/bionic

released

2.2.7-1ubuntu2.2
esm-infra/focal

not-affected

2.3.1-9ubuntu1.1
esm-infra/xenial

released

2.1.3-4ubuntu0.6
focal

not-affected

2.3.1-9ubuntu1.1
precise/esm

DNE

trusty

released

1.7.2-0ubuntu1.11

Показывать по

4.3 Medium

CVSS2

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.3
redhat
почти 7 лет назад

The session cookie generated by the CUPS web interface was easy to guess on Linux, allowing unauthorized scripted access to the web interface when the web interface is enabled. This issue affected versions prior to v2.2.10.

CVSS3: 5.9
nvd
почти 7 лет назад

The session cookie generated by the CUPS web interface was easy to guess on Linux, allowing unauthorized scripted access to the web interface when the web interface is enabled. This issue affected versions prior to v2.2.10.

CVSS3: 5.9
debian
почти 7 лет назад

The session cookie generated by the CUPS web interface was easy to gue ...

CVSS3: 5.9
github
больше 3 лет назад

The session cookie generated by the CUPS web interface was easy to guess on Linux, allowing unauthorized scripted access to the web interface when the web interface is enabled. This issue affected versions prior to v2.2.10.

CVSS3: 5.9
fstec
около 7 лет назад

Уязвимость веб-интерфейса сервера печати CUPS, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

4.3 Medium

CVSS2

5.9 Medium

CVSS3