PT-2012-4399 · Caucho · Quercus

Sergey Scherbel

·

Publicado

2012-08-12

·

Atualizado

2022-05-17

·

CVE-2012-2966

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Caucho Quercus versions prior to 4.0.29
Description The issue allows overwriting entries in the SERVER superglobal array based on POST parameters, which has unspecified impact and can be exploited remotely.
Recommendations For versions prior to 4.0.29, update to version 4.0.29 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2012-2966
GHSA-G5FX-CCWV-5C4F

Produtos afetados

Quercus