{ "id": "CVE-2011-0462", "sourceIdentifier": "cve@mitre.org", "published": "2011-04-10T02:51:19.243", "lastModified": "2024-11-21T01:24:02.420", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Multiple cross-site scripting (XSS) vulnerabilities in the login page in the webui component in SUSE openSUSE Build Service (OBS) before 2.1.6 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors." }, { "lang": "es", "value": "M\u00faltiples vulnerabilidades de ejecuci\u00f3n de secuencias de comandos en sitios cruzados (XSS) en la p\u00e1gina de inicio de sesi\u00f3n del componente de WebUI en SUSE openSUSE Build Service (OBS) antes de v2.1.6 permite a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s de vectores no especificados." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "baseScore": 4.3, "accessVector": "NETWORK", "accessComplexity": "MEDIUM", "authentication": "NONE", "confidentialityImpact": "NONE", "integrityImpact": "PARTIAL", "availabilityImpact": "NONE" }, "baseSeverity": "MEDIUM", "exploitabilityScore": 8.6, "impactScore": 2.9, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-79" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:*:*:*:*:*:*:*:*", "versionEndIncluding": "2.1.5.1", "matchCriteriaId": "348095AF-BCC2-4195-B883-C83B4519B796" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.0:*:*:*:*:*:*:*", "matchCriteriaId": "0FD1DDD7-CC31-49EB-8EBD-7FF134AD4225" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.5:*:*:*:*:*:*:*", "matchCriteriaId": "3D857B79-5EF2-418B-9559-E87E861E8745" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.6:*:*:*:*:*:*:*", "matchCriteriaId": "165342C0-2A95-451F-9F3A-C7C852E822B1" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7:*:*:*:*:*:*:*", "matchCriteriaId": "03F2D09A-5EF6-476D-8CCE-AE9083E758D5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.0:*:*:*:*:*:*:*", "matchCriteriaId": "BC94CB4E-4485-4F66-8166-AF80EFBEA039" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.2:*:*:*:*:*:*:*", "matchCriteriaId": "4F616342-EE87-4606-880D-475FC3763FEE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.3:*:*:*:*:*:*:*", "matchCriteriaId": "280FCA59-287F-4D00-A2F4-D67AADF6FC9F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.4:*:*:*:*:*:*:*", "matchCriteriaId": "3A74EE35-584D-4F4D-B219-E589E353F03C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.5:*:*:*:*:*:*:*", "matchCriteriaId": "66785388-8D31-4D82-B1B7-BB1BF79DC01F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.6:*:*:*:*:*:*:*", "matchCriteriaId": "ED2969C9-9603-4E3E-B760-1A9B5DABD1A7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.7:*:*:*:*:*:*:*", "matchCriteriaId": "70E5ABFE-6CF6-4785-BAF8-EDA5C3737E4B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.8:*:*:*:*:*:*:*", "matchCriteriaId": "EB4A91F2-338C-4128-8F72-2AA28A461756" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.9.90:*:*:*:*:*:*:*", "matchCriteriaId": "1774FF51-6E95-41F1-8BFC-45AE4DB7491C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.9.91:*:*:*:*:*:*:*", "matchCriteriaId": "583E18A1-CC23-4BE2-9613-52E8575538A7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:1.9.92:*:*:*:*:*:*:*", "matchCriteriaId": "2A2C36C6-09BE-4A8A-BF68-72E5ACC7F75F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0:*:*:*:*:*:*:*", "matchCriteriaId": "B6A4DC80-D559-4516-B2B8-67A10FA5E672" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.0:*:*:*:*:*:*:*", "matchCriteriaId": "030EA7EE-F788-4813-96E1-E6FC21F749B8" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "5E1EED8C-ED06-40B1-8837-5319DB51009B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.2:*:*:*:*:*:*:*", "matchCriteriaId": "16FBC9F4-BF69-4C8B-BC00-293BECF16624" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.3:*:*:*:*:*:*:*", "matchCriteriaId": "EA6C8261-DD6F-461A-9358-5BFFEF85AD62" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.4:*:*:*:*:*:*:*", "matchCriteriaId": "B9B75D0D-CC7A-4FE9-B71B-7A43D53DFAF3" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "9899C0E7-B19F-4266-A69A-E34EE09290A3" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.6:*:*:*:*:*:*:*", "matchCriteriaId": "D85DAA0A-9A2E-4AEB-8C27-CB92A456CA39" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.7:*:*:*:*:*:*:*", "matchCriteriaId": "7B1B927A-15CE-433D-880F-4CECFB0FDC5D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.8:*:*:*:*:*:*:*", "matchCriteriaId": "666973E1-4E24-4D78-A02A-4305A4EB873B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.16:*:*:*:*:*:*:*", "matchCriteriaId": "5CF698A5-B2B7-4918-BC1E-7D807C4E18F7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.103:*:*:*:*:*:*:*", "matchCriteriaId": "2A82F5A8-8638-420C-9244-B9373EBF2B4F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.104:*:*:*:*:*:*:*", "matchCriteriaId": "6DEF91AA-F15A-4A79-AB09-AF4F5D76E582" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.106:*:*:*:*:*:*:*", "matchCriteriaId": "51F8840F-EBBE-4A27-A523-E1A94411FC12" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1:*:*:*:*:*:*:*", "matchCriteriaId": "45A10192-12C2-45D2-BA51-EBA142550EC5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.0:*:*:*:*:*:*:*", "matchCriteriaId": "E2B03379-450D-4598-8809-B5670A266020" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "289AEAF3-45E3-42F0-810D-8BC8B7F24717" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "85393DBB-CC63-4646-913D-922A6B437919" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.3:*:*:*:*:*:*:*", "matchCriteriaId": "D713D43B-919C-4648-A6C8-C3DCE787AA03" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.4:*:*:*:*:*:*:*", "matchCriteriaId": "0B352186-C486-4F15-B7F1-2061AC45EFB9" }, { "vulnerable": true, "criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.5:*:*:*:*:*:*:*", "matchCriteriaId": "14605A5E-7381-4CF5-AC58-4C23B20636E9" } ] } ] } ], "references": [ { "url": "http://news.opensuse.org/2011/03/02/build-service-team-releases-new-versions-fixing-security-problems/", "source": "cve@mitre.org" }, { "url": "https://bugzilla.novell.com/show_bug.cgi?id=669909", "source": "cve@mitre.org" }, { "url": "http://news.opensuse.org/2011/03/02/build-service-team-releases-new-versions-fixing-security-problems/", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "https://bugzilla.novell.com/show_bug.cgi?id=669909", "source": "af854a3a-2127-422b-91ae-364da2661108" } ] }