PT-2012-3350 · Cumin · Cumin

Vincent Danen

·

Published

2012-04-22

·

Updated

2023-02-13

·

CVE-2012-1575

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Cumin versions prior to r5238
Description The issue involves multiple cross-site scripting (XSS) vulnerabilities. These vulnerabilities allow remote attackers to inject arbitrary web script or HTML. The attack vectors involve widgets or pages.
Recommendations For versions prior to r5238, update to version r5238 or later to resolve the issue. As a temporary workaround, consider restricting user input in widgets and pages to minimize the risk of exploitation.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2012-1575
RHSA-2012:0476
RHSA-2012:0477

Affected Products

Cumin