René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

166 lines
5.9 KiB
JSON

{
"id": "CVE-2011-2227",
"sourceIdentifier": "cve@mitre.org",
"published": "2011-10-08T02:52:52.300",
"lastModified": "2011-11-22T03:56:57.183",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Cross-site scripting (XSS) vulnerability in Novell Identity Manager (aka IDM) User Application 3.5.0, 3.5.1, 3.6.0, 3.6.1, 3.7.0, and 4.0.0, and Identity Manager Roles Based Provisioning Module 3.6.0, 3.6.1, 3.7.0, and 4.0.0, allows remote attackers to inject arbitrary web script or HTML via the apwaDetail (aka apwaDetailId) parameter, aka Bug 709603."
},
{
"lang": "es",
"value": "Vulnerabilidad de cross-site scripting (XSS) en Novell Identity Manager (tambi\u00e9n conocido como IDM) User Application v3.5.0, v3.5.1, v3.6.0, v3.6.1, v3.7.0 y v4.0.0, e Identity Manager Roles Based Provisioning Module v3.6.0, v3.6.1, v3.7.0,y v4.0.0, permite a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s del par\u00e1metro apwaDetail (tambi\u00e9n conocido como apwaDetailId), tambi\u00e9n conocido como Bug 709603."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE",
"baseScore": 4.3
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.6,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-79"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_roles_based_provisioning_module:3.6.0:*:*:*:*:*:*:*",
"matchCriteriaId": "7D958125-0657-4CEF-A9DF-2F8FFCC1DFD6"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_roles_based_provisioning_module:3.6.1:*:*:*:*:*:*:*",
"matchCriteriaId": "6EBB3E8A-FA93-4D23-94F4-DBDDDBD3F861"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_roles_based_provisioning_module:3.7.0:*:*:*:*:*:*:*",
"matchCriteriaId": "DEABF136-E21F-4C79-B38B-A1F3464A4543"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_roles_based_provisioning_module:4.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "16C2B282-48E2-4358-8CBA-1291045EBD7D"
}
]
}
]
},
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_user_application:3.5.0:*:*:*:*:*:*:*",
"matchCriteriaId": "41A55426-2224-47C9-B218-18B2CA3EE410"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_user_application:3.5.1:*:*:*:*:*:*:*",
"matchCriteriaId": "F3877FBC-1D03-43D0-8C20-2E28B56C8246"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_user_application:3.6.0:*:*:*:*:*:*:*",
"matchCriteriaId": "889F7CF3-D952-429E-AE5C-ACA9FDBFA5B5"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_user_application:3.6.1:*:*:*:*:*:*:*",
"matchCriteriaId": "D3A36FF9-5740-4180-8427-772942636826"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_user_application:3.7.0:*:*:*:*:*:*:*",
"matchCriteriaId": "91714BEF-75CE-456E-AB62-B5AAC29FFE39"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:novell:identity_manager_user_application:4.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "26DF6A06-1EE3-4219-8EC6-11D84E0C9DC1"
}
]
}
]
}
],
"references": [
{
"url": "http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5111710.html",
"source": "cve@mitre.org"
},
{
"url": "http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5111711.html",
"source": "cve@mitre.org"
},
{
"url": "http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5112230.html",
"source": "cve@mitre.org"
},
{
"url": "http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5112250.html",
"source": "cve@mitre.org"
},
{
"url": "http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5112270.html",
"source": "cve@mitre.org"
},
{
"url": "http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5112271.html",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/49935",
"source": "cve@mitre.org"
},
{
"url": "http://www.securitytracker.com/id?1026138",
"source": "cve@mitre.org"
},
{
"url": "https://bugzilla.novell.com/show_bug.cgi?id=709603",
"source": "cve@mitre.org"
}
]
}