Логотип exploitDog
bind:CVE-2012-4199
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-4199

Количество 4

Количество 4

ubuntu логотип

CVE-2012-4199

около 13 лет назад

template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 generates JavaScript function calls containing private product names or private component names in certain circumstances involving custom-field visibility control, which allows remote attackers to obtain sensitive information by reading HTML source code.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2012-4199

около 13 лет назад

template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 generates JavaScript function calls containing private product names or private component names in certain circumstances involving custom-field visibility control, which allows remote attackers to obtain sensitive information by reading HTML source code.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2012-4199

около 13 лет назад

template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3. ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-qjc8-mcp6-hq6r

больше 3 лет назад

template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 generates JavaScript function calls containing private product names or private component names in certain circumstances involving custom-field visibility control, which allows remote attackers to obtain sensitive information by reading HTML source code.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-4199

template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 generates JavaScript function calls containing private product names or private component names in certain circumstances involving custom-field visibility control, which allows remote attackers to obtain sensitive information by reading HTML source code.

CVSS2: 4.3
0%
Низкий
около 13 лет назад
nvd логотип
CVE-2012-4199

template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 generates JavaScript function calls containing private product names or private component names in certain circumstances involving custom-field visibility control, which allows remote attackers to obtain sensitive information by reading HTML source code.

CVSS2: 4.3
0%
Низкий
около 13 лет назад
debian логотип
CVE-2012-4199

template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3. ...

CVSS2: 4.3
0%
Низкий
около 13 лет назад
github логотип
GHSA-qjc8-mcp6-hq6r

template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 generates JavaScript function calls containing private product names or private component names in certain circumstances involving custom-field visibility control, which allows remote attackers to obtain sensitive information by reading HTML source code.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу