mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 17:21:36 +00:00
273 lines
11 KiB
JSON
273 lines
11 KiB
JSON
{
|
|
"id": "CVE-2011-0462",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2011-04-10T02:51:19.243",
|
|
"lastModified": "2024-11-21T01:24:02.420",
|
|
"vulnStatus": "Modified",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Multiple cross-site scripting (XSS) vulnerabilities in the login page in the webui component in SUSE openSUSE Build Service (OBS) before 2.1.6 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "M\u00faltiples vulnerabilidades de ejecuci\u00f3n de secuencias de comandos en sitios cruzados (XSS) en la p\u00e1gina de inicio de sesi\u00f3n del componente de WebUI en SUSE openSUSE Build Service (OBS) antes de v2.1.6 permite a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s de vectores no especificados."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
|
|
"baseScore": 4.3,
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "MEDIUM",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "PARTIAL",
|
|
"availabilityImpact": "NONE"
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 8.6,
|
|
"impactScore": 2.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": true
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-79"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:*:*:*:*:*:*:*:*",
|
|
"versionEndIncluding": "2.1.5.1",
|
|
"matchCriteriaId": "348095AF-BCC2-4195-B883-C83B4519B796"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0FD1DDD7-CC31-49EB-8EBD-7FF134AD4225"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3D857B79-5EF2-418B-9559-E87E861E8745"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "165342C0-2A95-451F-9F3A-C7C852E822B1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "03F2D09A-5EF6-476D-8CCE-AE9083E758D5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BC94CB4E-4485-4F66-8166-AF80EFBEA039"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4F616342-EE87-4606-880D-475FC3763FEE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "280FCA59-287F-4D00-A2F4-D67AADF6FC9F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3A74EE35-584D-4F4D-B219-E589E353F03C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "66785388-8D31-4D82-B1B7-BB1BF79DC01F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "ED2969C9-9603-4E3E-B760-1A9B5DABD1A7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.7.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "70E5ABFE-6CF6-4785-BAF8-EDA5C3737E4B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EB4A91F2-338C-4128-8F72-2AA28A461756"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.9.90:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1774FF51-6E95-41F1-8BFC-45AE4DB7491C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.9.91:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "583E18A1-CC23-4BE2-9613-52E8575538A7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:1.9.92:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2A2C36C6-09BE-4A8A-BF68-72E5ACC7F75F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B6A4DC80-D559-4516-B2B8-67A10FA5E672"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "030EA7EE-F788-4813-96E1-E6FC21F749B8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5E1EED8C-ED06-40B1-8837-5319DB51009B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "16FBC9F4-BF69-4C8B-BC00-293BECF16624"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EA6C8261-DD6F-461A-9358-5BFFEF85AD62"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B9B75D0D-CC7A-4FE9-B71B-7A43D53DFAF3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9899C0E7-B19F-4266-A69A-E34EE09290A3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D85DAA0A-9A2E-4AEB-8C27-CB92A456CA39"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.7:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7B1B927A-15CE-433D-880F-4CECFB0FDC5D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "666973E1-4E24-4D78-A02A-4305A4EB873B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.16:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5CF698A5-B2B7-4918-BC1E-7D807C4E18F7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.103:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2A82F5A8-8638-420C-9244-B9373EBF2B4F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.104:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6DEF91AA-F15A-4A79-AB09-AF4F5D76E582"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.0.106:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "51F8840F-EBBE-4A27-A523-E1A94411FC12"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "45A10192-12C2-45D2-BA51-EBA142550EC5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E2B03379-450D-4598-8809-B5670A266020"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "289AEAF3-45E3-42F0-810D-8BC8B7F24717"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "85393DBB-CC63-4646-913D-922A6B437919"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D713D43B-919C-4648-A6C8-C3DCE787AA03"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0B352186-C486-4F15-B7F1-2061AC45EFB9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:novell:opensuse_build_service:2.1.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "14605A5E-7381-4CF5-AC58-4C23B20636E9"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://news.opensuse.org/2011/03/02/build-service-team-releases-new-versions-fixing-security-problems/",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "https://bugzilla.novell.com/show_bug.cgi?id=669909",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://news.opensuse.org/2011/03/02/build-service-team-releases-new-versions-fixing-security-problems/",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "https://bugzilla.novell.com/show_bug.cgi?id=669909",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
}
|
|
]
|
|
} |