Логотип exploitDog
bind:CVE-2012-2239
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-2239

Количество 4

Количество 4

ubuntu логотип

CVE-2012-2239

около 13 лет назад

Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.

CVSS3: 9.1
EPSS: Низкий
nvd логотип

CVE-2012-2239

около 13 лет назад

Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2012-2239

около 13 лет назад

Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attacke ...

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-86gr-hf8c-38jv

больше 3 лет назад

Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-2239

Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.

CVSS3: 9.1
0%
Низкий
около 13 лет назад
nvd логотип
CVE-2012-2239

Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.

CVSS3: 9.1
0%
Низкий
около 13 лет назад
debian логотип
CVE-2012-2239

Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attacke ...

CVSS3: 9.1
0%
Низкий
около 13 лет назад
github логотип
GHSA-86gr-hf8c-38jv

Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.

CVSS3: 9.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу