mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-09-17 18:45:49 +00:00
250 lines
8.7 KiB
JSON
250 lines
8.7 KiB
JSON
{
|
|
"id": "CVE-2012-4955",
|
|
"sourceIdentifier": "cret@cert.org",
|
|
"published": "2012-11-15T11:58:40.167",
|
|
"lastModified": "2024-11-21T01:43:49.093",
|
|
"vulnStatus": "Modified",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Cross-site scripting (XSS) vulnerability in Dell OpenManage Server Administrator (OMSA) before 6.5.0.1, 7.0 before 7.0.0.1, and 7.1 before 7.1.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Una vulnerabilidad de ejecuci\u00f3n de comandos en sitios cruzados (XSS) en Dell OpenManage Server Administrator (OMSA) antes de v6.5.0.1, v7.0 antes de v7.0.0.1 y v7.1 antes de v7.1.0.1 permite a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s de vectores no especificados.\r\n"
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
|
|
"baseScore": 4.3,
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "MEDIUM",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "PARTIAL",
|
|
"availabilityImpact": "NONE"
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 8.6,
|
|
"impactScore": 2.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": true
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-79"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:*:*:*:*:*:*:*:*",
|
|
"versionEndIncluding": "6.5.0",
|
|
"matchCriteriaId": "E706BC8F-630E-4FBC-8FC4-97B87D2EB715"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:1.00.0000:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F6F24610-FB84-4DCC-8844-23A1F0722B9C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:4.3.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C1912F7A-11BC-43F7-8BED-510EBFFF6864"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:4.4.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "425AACB0-4516-43F0-83B6-B4C28C7538CE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:4.5.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D03DB39C-21E3-4BF4-9B0C-B455BE789A95"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:5.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3E1DF0F2-39A4-4BCD-A637-D665224C6857"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:5.1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2EE1C754-8D05-43C4-841F-845459D133B7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:5.1.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "54C118FC-4C80-49C9-804E-866E86C9E713"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:5.2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DD7B3379-E567-4003-978A-B7807F4546C6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:5.3.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3C63FD84-0CAE-4617-9B8C-9C41682BA69F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:5.4.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4355B597-1FA6-473C-86E6-88B80CA5DE3A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:5.5.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E20877CC-F67C-400A-9DBF-4883DA9A8312"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:5.5.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F88BE664-1528-4661-A392-F1E2511B569D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:6.2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "624014D2-A5D9-4305-BE2E-8D476C3C0603"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:6.3.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "29E8C581-3B4E-4578-A1EF-DEE26E0F2EE7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:6.4.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "71B05EC3-489A-45E5-93B9-5D2D9A72B1F1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:7.0.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "042FCC01-F649-4AA0-95B1-1FBA63E0D23A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:dell:openmanage_server_administrator:7.1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2AC68FF2-CE6A-4101-A440-022BD2191F68"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://osvdb.org/87405",
|
|
"source": "cret@cert.org"
|
|
},
|
|
{
|
|
"url": "http://secunia.com/advisories/51297",
|
|
"source": "cret@cert.org"
|
|
},
|
|
{
|
|
"url": "http://www.dell.com/support/drivers/us/en/19/DriverDetails/Product/poweredge-r710?driverId=5JDN0&osCode=WNET&fileId=3082293694",
|
|
"source": "cret@cert.org",
|
|
"tags": [
|
|
"Patch"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.dell.com/support/drivers/us/en/19/DriverDetails/Product/poweredge-r710?driverId=JJMWP&osCode=WNET&fileId=3082295338",
|
|
"source": "cret@cert.org",
|
|
"tags": [
|
|
"Patch"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.dell.com/support/drivers/us/en/19/DriverDetails/Product/poweredge-r710?driverId=PCXMR&osCode=WNET&fileId=3082295344",
|
|
"source": "cret@cert.org",
|
|
"tags": [
|
|
"Patch"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.kb.cert.org/vuls/id/558132",
|
|
"source": "cret@cert.org",
|
|
"tags": [
|
|
"US Government Resource"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/56518",
|
|
"source": "cret@cert.org"
|
|
},
|
|
{
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/80071",
|
|
"source": "cret@cert.org"
|
|
},
|
|
{
|
|
"url": "http://osvdb.org/87405",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "http://secunia.com/advisories/51297",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "http://www.dell.com/support/drivers/us/en/19/DriverDetails/Product/poweredge-r710?driverId=5JDN0&osCode=WNET&fileId=3082293694",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108",
|
|
"tags": [
|
|
"Patch"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.dell.com/support/drivers/us/en/19/DriverDetails/Product/poweredge-r710?driverId=JJMWP&osCode=WNET&fileId=3082295338",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108",
|
|
"tags": [
|
|
"Patch"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.dell.com/support/drivers/us/en/19/DriverDetails/Product/poweredge-r710?driverId=PCXMR&osCode=WNET&fileId=3082295344",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108",
|
|
"tags": [
|
|
"Patch"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.kb.cert.org/vuls/id/558132",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108",
|
|
"tags": [
|
|
"US Government Resource"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/56518",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
},
|
|
{
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/80071",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
}
|
|
]
|
|
} |