2024-12-08 03:06:42 +00:00

380 lines
14 KiB
JSON

{
"id": "CVE-2011-5084",
"sourceIdentifier": "cve@mitre.org",
"published": "2012-04-02T18:55:00.920",
"lastModified": "2024-11-21T01:33:35.760",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Cross-site scripting (XSS) vulnerability in Movable Type 4.x before 4.36 and 5.x before 5.05 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors."
},
{
"lang": "es",
"value": "Vulnerabilidad de ejecuci\u00f3n de secuencias de comandos en sitios cruzados (XSS) en Movable Type v4.x anteriores a v4.36 y v5.x anteriores a v5.05, permite a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s de vectores no especificados."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
"baseScore": 4.3,
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE"
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 8.6,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-79"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:*:*:*:*:*:*:*",
"matchCriteriaId": "8CA6D5B7-BB96-46A9-AD07-F4F744657396"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:beta:*:*:*:*:*:*",
"matchCriteriaId": "8342D067-1B16-463D-838B-D16EF7DDCCBB"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:beta2:*:*:*:*:*:*",
"matchCriteriaId": "91A91FDA-16BD-40A3-A055-1F9F61BC90A8"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:beta3:*:*:*:*:*:*",
"matchCriteriaId": "A22E7F1C-19D3-4C72-8EC7-E968FDEDA780"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:beta4:*:*:*:*:*:*",
"matchCriteriaId": "1B8D3280-D97B-47C9-8737-8DABCA53C290"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:beta5:*:*:*:*:*:*",
"matchCriteriaId": "3089827B-7A32-4EA4-93EC-63B80FF5E690"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:beta6:*:*:*:*:*:*",
"matchCriteriaId": "A929B42C-7C65-4D62-B418-EEEF0C3D0E36"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:beta7:*:*:*:*:*:*",
"matchCriteriaId": "10D3CF75-84DE-412A-BB7C-1A9889B06D16"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:rc1:*:*:*:*:*:*",
"matchCriteriaId": "2CF07C91-FF25-46AC-B42A-DD6D0F72238E"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:rc2:*:*:*:*:*:*",
"matchCriteriaId": "F0C879EF-5E16-49D4-9A6E-21C44C041D42"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.0:rc3:*:*:*:*:*:*",
"matchCriteriaId": "403A8118-6AFE-4A25-882E-1928B489C80F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.01:*:*:*:*:*:*:*",
"matchCriteriaId": "8EC553F4-89D4-40A8-BEF3-9ABEECE9366F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.1:*:*:*:*:*:*:*",
"matchCriteriaId": "82084FAB-6563-483E-95F1-49D9BCEB5C8A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.1:beta:*:*:*:*:*:*",
"matchCriteriaId": "E38527C3-2E6F-4B9A-AF59-39AC2C3F7E9D"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.01:beta:*:*:*:*:*:*",
"matchCriteriaId": "0847531A-24B6-464E-A892-9FFB8961ED1F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.1:beta2:*:*:*:*:*:*",
"matchCriteriaId": "D197DDAE-00ED-47D5-9F6A-6E15EAE56755"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.01:beta2:*:*:*:*:*:*",
"matchCriteriaId": "E030ADF7-ADF5-458E-81ED-CD565F9725FC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.1:rc1:*:*:*:*:*:*",
"matchCriteriaId": "C628DCF9-7F07-447F-9F1F-636D431BBD18"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.01:rc1:*:*:*:*:*:*",
"matchCriteriaId": "ADD27600-5559-4FC3-8877-681AB32207AE"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.2:*:*:*:*:*:*:*",
"matchCriteriaId": "56195FCE-D933-40C6-A6A3-6AC8CFECA5DB"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.2:rc2:*:*:*:*:*:*",
"matchCriteriaId": "0B18D123-7449-489B-B3EC-0A72B879D92D"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.2:rc4:*:*:*:*:*:*",
"matchCriteriaId": "BD8B70C3-003A-4768-B2B4-486688952BCC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.2:rc5:*:*:*:*:*:*",
"matchCriteriaId": "69CAACDD-2304-4F1B-AD36-5F3B06A87551"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.12:*:*:*:*:*:*:*",
"matchCriteriaId": "FFB18069-B21A-4663-93B2-F055A9D7D78D"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.15:beta1:*:*:*:*:*:*",
"matchCriteriaId": "F249491D-31C3-47D9-97B4-84C53E8C90E9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.15:beta3:*:*:*:*:*:*",
"matchCriteriaId": "5BBCAE47-DEB7-41F4-B21E-8E77AA76483A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.15:beta4:*:*:*:*:*:*",
"matchCriteriaId": "4A2B6514-6F27-454A-9CF9-F198438E4B22"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.21:*:*:*:*:*:*:*",
"matchCriteriaId": "7AD39A71-0B61-4319-BEE1-12CAD4B095A1"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.22:*:*:*:*:*:*:*",
"matchCriteriaId": "E36DD87F-F918-4BDD-98B7-41527470B838"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.23:*:*:*:*:*:*:*",
"matchCriteriaId": "2B49D8B0-39C9-480B-9471-1846CE5A2142"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.24:*:*:*:*:*:*:*",
"matchCriteriaId": "F909511A-D7B6-4033-AB99-87D6BC5741F8"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.25:*:*:*:*:*:*:*",
"matchCriteriaId": "8A200E33-641A-41B3-8EB3-E7380B686C8C"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.26:*:*:*:*:*:*:*",
"matchCriteriaId": "52311931-CE3A-487B-B153-4066D07F63E8"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.27:*:*:*:*:*:*:*",
"matchCriteriaId": "86ED3B93-8769-4A60-BAE4-C50483254905"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.28:*:*:*:*:*:*:*",
"matchCriteriaId": "703EEB4B-4747-45D5-9335-6FD5CB238F13"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.29:*:*:*:*:*:*:*",
"matchCriteriaId": "36E48EE7-3212-406E-80AB-26B0206E97E3"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.35:*:*:*:*:*:*:*",
"matchCriteriaId": "1ADC65FF-B4E8-4346-80DE-647BDC4A4D3C"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.36:*:*:*:*:*:*:*",
"matchCriteriaId": "F8E76C88-E486-4463-BA41-6A08ECC5E214"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.261:*:*:*:*:*:*:*",
"matchCriteriaId": "E4905997-E4CE-406D-BE0F-B5E2F87AA177"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.291:*:*:*:*:*:*:*",
"matchCriteriaId": "45A49069-F509-4C30-BC9F-DB1FF7C39294"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:4.292:*:*:*:*:*:*:*",
"matchCriteriaId": "E7330A56-5D69-495B-B0E9-A820B70573C5"
}
]
}
]
},
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.0:*:*:*:*:*:*:*",
"matchCriteriaId": "F978B3B9-8300-45A7-BDBD-13C504A1BCCC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.0:beta1:*:*:*:*:*:*",
"matchCriteriaId": "2C0E810B-453A-4C22-A8AF-C8DC83104A56"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.0:beta2:*:*:*:*:*:*",
"matchCriteriaId": "DF2F85C7-77AA-4431-8017-7EE66D2216CA"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.0:beta3:*:*:*:*:*:*",
"matchCriteriaId": "944DAD7F-2A51-4641-AFE9-5CB6AB957923"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.0:beta4:*:*:*:*:*:*",
"matchCriteriaId": "45E04B8D-6F13-4D7C-9D99-70718EF82BF3"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.0:rc1:*:*:*:*:*:*",
"matchCriteriaId": "941AF9C9-341E-4820-8B1C-5D8C5B19861A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.0:rc2:*:*:*:*:*:*",
"matchCriteriaId": "0AB08B1C-C527-4D51-932B-7DAC8D507F47"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.0:rc3:*:*:*:*:*:*",
"matchCriteriaId": "246D565F-5260-4F5E-B766-95BADF16BC59"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.01:*:*:*:*:*:*:*",
"matchCriteriaId": "59407222-BBBB-468A-8604-A50ED9F40048"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.02:*:*:*:*:*:*:*",
"matchCriteriaId": "CF488003-44FA-48F4-8F5A-46B46523E175"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.03:*:*:*:*:*:*:*",
"matchCriteriaId": "5B0A9628-B04F-492D-8158-DE95980CE4E4"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.04:*:*:*:*:*:*:*",
"matchCriteriaId": "D910C9B1-15D1-4E8F-8901-25063D26DC3A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.05:*:*:*:*:*:*:*",
"matchCriteriaId": "F0627468-9A42-4793-8E20-F22BD433FBAF"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:sixapart:movable_type:5.031:*:*:*:*:*:*:*",
"matchCriteriaId": "98DC35B2-E679-4049-8A2B-CE2C6F7E6E89"
}
]
}
]
}
],
"references": [
{
"url": "http://www.debian.org/security/2012/dsa-2423",
"source": "cve@mitre.org"
},
{
"url": "http://www.movabletype.org/2011/05/movable_type_51_and_505_436_security_update.html",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://www.debian.org/security/2012/dsa-2423",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.movabletype.org/2011/05/movable_type_51_and_505_436_security_update.html",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Patch",
"Vendor Advisory"
]
}
]
}