René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

91 lines
2.9 KiB
JSON

{
"id": "CVE-2008-1916",
"sourceIdentifier": "cve@mitre.org",
"published": "2008-04-23T13:05:00.000",
"lastModified": "2017-08-08T01:30:35.323",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Multiple cross-site scripting (XSS) vulnerabilities in the Ubercart 5.x before 5.x-1.0-rc1 module for Drupal allow remote attackers to inject arbitrary web script or HTML via text fields intended for the (1) address and (2) order information, which are later displayed on the order view page and unspecified other administrative pages, a different vulnerability than CVE-2008-1428."
},
{
"lang": "es",
"value": "M\u00faltiples vulnerabilidades de secuencias de comandos en sitios cruzados (XSS), vulnerabilidades en Ubercart 5.x anteteriores a 5.x-1.0-rc1, m\u00f3dulo para drupal que permite a los atacantes remotos inyectar c\u00f3digo web o HTML a trav\u00e9s de los campos deseados (1) direcci\u00f3n y (2) pedir informaci\u00f3n, los cuales son mostrados mas tarde en la p\u00e1gina que hemos pedido y en otras p\u00e1ginas administrativas no especificadas, es una vulnerabilidad distinta a CVE-2008-1428."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE",
"baseScore": 4.3
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.6,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-79"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:drupal:ubercart_module:5-1.0:rc1:*:*:*:*:*:*",
"matchCriteriaId": "739895AB-2F58-4E92-BE95-9D2BED55C5E6"
}
]
}
]
}
],
"references": [
{
"url": "http://drupal.org/node/241944",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://www.vupen.com/english/advisories/2008/1083/references",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/41624",
"source": "cve@mitre.org"
}
]
}