René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

83 lines
2.5 KiB
JSON

{
"id": "CVE-2011-0323",
"sourceIdentifier": "PSIRT-CNA@flexerasoftware.com",
"published": "2011-02-07T21:00:14.680",
"lastModified": "2017-08-17T01:33:26.837",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Topaz Systems SigPlus Pro ActiveX Control 3.95, and possibly other versions before 4.29, allows remote attackers to execute arbitrary code by calling the exposed unsafe (1) SetLogFilePath and (2) SigMessage methods to create arbitrary files with arbitrary content."
},
{
"lang": "es",
"value": "Topaz Systems SigPlus Pro ActiveX Control v3.95, y posiblemente otras versiones anteriores a v4.29, permite a atacantes remotos ejecutar c\u00f3digo arbitrario mediante una llamada los m\u00e9todos afectados (1) SetLogFilePath y (2) SigMessage para crear archivos arbitrarios con contenido arbitrario."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 9.3
},
"baseSeverity": "HIGH",
"exploitabilityScore": 8.6,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:topazsystems:sigplus_pro_activex_control:3.95:*:*:*:*:*:*:*",
"matchCriteriaId": "96B79327-3661-43C4-8D46-DE5A995FFF6A"
}
]
}
]
}
],
"references": [
{
"url": "http://www.securityfocus.com/bid/46128",
"source": "PSIRT-CNA@flexerasoftware.com"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/65117",
"source": "PSIRT-CNA@flexerasoftware.com"
}
]
}