mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-07-29 05:56:17 +00:00
235 lines
8.3 KiB
JSON
235 lines
8.3 KiB
JSON
{
|
|
"id": "CVE-2011-1716",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2011-04-18T18:55:02.797",
|
|
"lastModified": "2018-10-09T19:31:46.163",
|
|
"vulnStatus": "Modified",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Multiple cross-site scripting (XSS) vulnerabilities in the Web UI in Xymon before 4.3.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "M\u00faltiples vulnerabilidades de ejecuci\u00f3n de secuencias de comandos en sitios cruzados (XSS) en el Web UI en Xymon anterior a v4.3.1 permite a atacantes remotos inyectar script de su elecci\u00f3n o HTML a trav\u00e9s de vectores desconocidos."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N",
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "MEDIUM",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "PARTIAL",
|
|
"availabilityImpact": "NONE",
|
|
"baseScore": 4.3
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 8.6,
|
|
"impactScore": 2.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": true
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-79"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:beta3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BD14F8B7-F57C-424F-BF38-CF9F54A4E838"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:beta4:*:*:*:*:*:*",
|
|
"matchCriteriaId": "15F71F03-2D65-4324-A459-90A375AAAF1B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:beta5:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EF49DB6E-A1AF-47C4-8BE3-D034123171CA"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:beta6:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AABC1B37-75A0-4C1F-B512-73F8BF1D2592"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:rc1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "77CD6EEB-DE9B-4C49-86A7-F855B5EF1C17"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:rc2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2797102B-29CC-41B6-B5F1-D468246CDE02"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:rc3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D392EB3D-E120-4E4D-A467-08BC1FBCAF8D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:rc4:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CEBED51A-3260-419E-AF81-2E323283729B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:rc5:*:*:*:*:*:*",
|
|
"matchCriteriaId": "61C0908F-1EA0-4E01-9E84-43700E2E3D52"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:rc6:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4E47DC8E-2196-45DF-985E-9892235A6108"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:*:*:*:*:*:*:*:*",
|
|
"versionEndIncluding": "4.3.0",
|
|
"matchCriteriaId": "7F370198-BB7D-4235-BD66-DC61E4B123F5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D34E3D6A-8A6D-4C38-9695-3B4B68805206"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.0.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F9CA43BB-EB51-4DE2-BDBE-4AB36ABB45A8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.0.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B777EA27-4EF3-43A4-B526-04B3D781B37B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.0.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0D529B6C-13F4-42E0-91A8-A453D1FB18DB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.0.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D5FB831F-695C-4ACD-B9B6-91910CC38E48"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.1.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DFF9FA93-847A-4643-BB90-90AC31DE7C72"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.1.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F7A7DED6-B90D-4A05-ACF1-510D16B2C1F6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.1.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B3EBFA2C-78A8-45BB-B6E2-F74595943813"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.1.2:p1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6A33AD76-55B7-42B4-997B-B4C595030AC9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.1.2:p2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DB9A6911-0622-4A71-8ADA-1BC162F12C96"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.2.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B8483753-07E0-476A-8D04-85905B50CEB4"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.2.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1071598C-C7CC-4704-A883-7FBAE94F3573"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.2.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D6C4977F-2C44-4222-BD38-266127076A0C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.3.0:beta1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E4BEDF60-02D7-4192-A3BE-6D35A6BAE886"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.3.0:beta2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8AE0300B-8514-409A-AA89-A591918855C7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.3.0:beta3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2FD5FA1D-576F-4A4F-873B-8F47BD871374"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:xymon:xymon:4.3.0:rc1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EB113981-5BE0-4AAC-94E3-6A2C34A5E7E8"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://securityreason.com/securityalert/8209",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/archive/1/517316/100/0/threaded",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/archive/1/517325/100/0/threaded",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/47156",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://xymon.svn.sourceforge.net/viewvc/xymon/branches/4.3.2/Changes?revision=6673&view=markup",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/66542",
|
|
"source": "cve@mitre.org"
|
|
}
|
|
]
|
|
} |