Логотип exploitDog
bind:CVE-2012-6112
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-6112

Количество 4

Количество 4

ubuntu логотип

CVE-2012-6112

больше 12 лет назад

classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellchecker) addon before 2.0.6.1 for TinyMCE, as used in Moodle 2.1.x before 2.1.10, 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 and other products, does not properly handle control characters, which allows remote attackers to trigger arbitrary outbound HTTP requests via a crafted string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2012-6112

больше 12 лет назад

classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellchecker) addon before 2.0.6.1 for TinyMCE, as used in Moodle 2.1.x before 2.1.10, 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 and other products, does not properly handle control characters, which allows remote attackers to trigger arbitrary outbound HTTP requests via a crafted string.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2012-6112

больше 12 лет назад

classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellcheck ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-fx5h-3786-h2w6

около 3 лет назад

PHP Spellchecker addon for TinyMCE allows attackers to trigger arbitrary outbound HTTP requests

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-6112

classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellchecker) addon before 2.0.6.1 for TinyMCE, as used in Moodle 2.1.x before 2.1.10, 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 and other products, does not properly handle control characters, which allows remote attackers to trigger arbitrary outbound HTTP requests via a crafted string.

CVSS2: 5
1%
Низкий
больше 12 лет назад
nvd логотип
CVE-2012-6112

classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellchecker) addon before 2.0.6.1 for TinyMCE, as used in Moodle 2.1.x before 2.1.10, 2.2.x before 2.2.7, 2.3.x before 2.3.4, and 2.4.x before 2.4.1 and other products, does not properly handle control characters, which allows remote attackers to trigger arbitrary outbound HTTP requests via a crafted string.

CVSS2: 5
1%
Низкий
больше 12 лет назад
debian логотип
CVE-2012-6112

classes/GoogleSpell.php in the PHP Spellchecker (aka Google Spellcheck ...

CVSS2: 5
1%
Низкий
больше 12 лет назад
github логотип
GHSA-fx5h-3786-h2w6

PHP Spellchecker addon for TinyMCE allows attackers to trigger arbitrary outbound HTTP requests

1%
Низкий
около 3 лет назад

Уязвимостей на страницу