Логотип exploitDog
bind:CVE-2012-5357
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-5357

Количество 2

Количество 2

nvd логотип

CVE-2012-5357

больше 8 лет назад

Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-8hjq-53vf-885h

больше 3 лет назад

Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data.

CVSS3: 9.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2012-5357

Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data.

CVSS3: 9.8
83%
Высокий
больше 8 лет назад
github логотип
GHSA-8hjq-53vf-885h

Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data.

CVSS3: 9.8
83%
Высокий
больше 3 лет назад

Уязвимостей на страницу