Логотип exploitDog
bind:CVE-2018-1000225
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-1000225

Количество 7

Количество 7

ubuntu логотип

CVE-2018-1000225

больше 7 лет назад

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Cross Site Scripting (XSS) vulnerability in cobbler-web that can result in Privilege escalation to admin.. This attack appear to be exploitable via "network connectivity". Sending unauthenticated JavaScript payload to the Cobbler XMLRPC API (/cobbler_api).

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2018-1000225

больше 7 лет назад

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Cross Site Scripting (XSS) vulnerability in cobbler-web that can result in Privilege escalation to admin.. This attack appear to be exploitable via "network connectivity". Sending unauthenticated JavaScript payload to the Cobbler XMLRPC API (/cobbler_api).

CVSS3: 9.6
EPSS: Низкий
nvd логотип

CVE-2018-1000225

больше 7 лет назад

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Cross Site Scripting (XSS) vulnerability in cobbler-web that can result in Privilege escalation to admin.. This attack appear to be exploitable via "network connectivity". Sending unauthenticated JavaScript payload to the Cobbler XMLRPC API (/cobbler_api).

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2018-1000225

больше 7 лет назад

Cobbler version Verified as present in Cobbler versions 2.6.11+, but c ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-q9g5-98pm-w6q7

больше 3 лет назад

Cobbler XSS Vulnerability

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2590-1

больше 7 лет назад

Security update for cobbler

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:0046-1

около 5 лет назад

Security update for cobbler

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-1000225

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Cross Site Scripting (XSS) vulnerability in cobbler-web that can result in Privilege escalation to admin.. This attack appear to be exploitable via "network connectivity". Sending unauthenticated JavaScript payload to the Cobbler XMLRPC API (/cobbler_api).

CVSS3: 6.1
0%
Низкий
больше 7 лет назад
redhat логотип
CVE-2018-1000225

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Cross Site Scripting (XSS) vulnerability in cobbler-web that can result in Privilege escalation to admin.. This attack appear to be exploitable via "network connectivity". Sending unauthenticated JavaScript payload to the Cobbler XMLRPC API (/cobbler_api).

CVSS3: 9.6
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-1000225

Cobbler version Verified as present in Cobbler versions 2.6.11+, but code inspection suggests at least 2.0.0+ or possibly even older versions may be vulnerable contains a Cross Site Scripting (XSS) vulnerability in cobbler-web that can result in Privilege escalation to admin.. This attack appear to be exploitable via "network connectivity". Sending unauthenticated JavaScript payload to the Cobbler XMLRPC API (/cobbler_api).

CVSS3: 6.1
0%
Низкий
больше 7 лет назад
debian логотип
CVE-2018-1000225

Cobbler version Verified as present in Cobbler versions 2.6.11+, but c ...

CVSS3: 6.1
0%
Низкий
больше 7 лет назад
github логотип
GHSA-q9g5-98pm-w6q7

Cobbler XSS Vulnerability

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2590-1

Security update for cobbler

больше 7 лет назад
suse-cvrf логотип
openSUSE-SU-2021:0046-1

Security update for cobbler

около 5 лет назад

Уязвимостей на страницу