René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

98 lines
3.1 KiB
JSON

{
"id": "CVE-2006-3958",
"sourceIdentifier": "cve@mitre.org",
"published": "2006-08-01T21:04:00.000",
"lastModified": "2017-07-20T01:32:43.460",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Multiple unspecified cross-site scripting (XSS) vulnerabilities in Taskjitsu 2.0.3 allow remote attackers to inject arbitrary web script or HTML via (1) the Search Tasks system, or authenticated users via (2) the Edit Task system, (3) the back-end Category Editor system, and (4) \"Pages that display task status, email addresses, URL, customer, and project information.\""
},
{
"lang": "es",
"value": "M\u00faltiples vulnerabilidades de secuencias de comandos en sitios cruzados (XSS) en Taskjitsu 2.0.3 permite a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s del sistema (1) Search Tasks, o usuarios validados a trav\u00e9s del sistema (2)Edit Task, (3) el sistema back-end Category Editor, y (4) P\u00e1ginas que muestran el estado de la tarea, direcci\u00f3n email, URL, cliente, y informaci\u00f3n deol proyecto\"."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE",
"baseScore": 4.3
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.6,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-noinfo"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:pkr_internet:taskjitsu:2.0.3:*:*:*:*:*:*:*",
"matchCriteriaId": "19EABEE0-5CAD-40BA-9E6F-D98A609FFBC5"
}
]
}
]
}
],
"references": [
{
"url": "http://www.pkrinternet.com/download/RELEASE-NOTES.txt",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/19251",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2006/3058",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/28178",
"source": "cve@mitre.org"
},
{
"url": "https://www.pkrinternet.com/taskjitsu/task/3477",
"source": "cve@mitre.org"
}
]
}