PT-2012-4179 · Red Hat · Red Hat Enterprise Messaging+1

·

CVE-2012-2683

·

Publicado

2012-09-28

·

Atualizado

2023-02-13

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Cumin versions prior to 0.1.5444 Red Hat Enterprise Messaging, Realtime, and Grid (MRG) version 2.0
Description The issue allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to error message displays or in source HTML on certain pages.
Recommendations For Cumin versions prior to 0.1.5444, update to version 0.1.5444 or later. For Red Hat Enterprise Messaging, Realtime, and Grid (MRG) version 2.0, consider disabling error message displays and restricting access to certain pages until a patch is available.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-2683
RHSA-2012:1278
RHSA-2012:1281

Produtos afetados

Cumin
Red Hat Enterprise Messaging