Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.841189
Categoría:Ubuntu Local Security Checks
Título:Ubuntu Update for moin USN-1604-1
Resumen:Ubuntu Update for Linux kernel vulnerabilities USN-1604-1
Descripción:Summary:
Ubuntu Update for Linux kernel vulnerabilities USN-1604-1

Vulnerability Insight:
It was discovered that MoinMoin did not properly sanitize certain input,
resulting in a cross-site scripting (XSS) vulnerability. With cross-site
scripting vulnerabilities, if a user were tricked into viewing server
output during a crafted server request, a remote attacker could exploit
this to modify the contents, or steal confidential data, within the same
domain. (CVE-2011-1058)

It was discovered that MoinMoin incorrectly handled group names that
contain virtual group names such as 'All', 'Known' or 'Trusted'. This could
result in a remote user having incorrect permissions. (CVE-2012-4404)

Affected Software/OS:
moin on Ubuntu 12.04 LTS,
Ubuntu 11.10,
Ubuntu 11.04,
Ubuntu 10.04 LTS

Solution:
Please Install the Updated Packages.

CVSS Score:
6.0

CVSS Vector:
AV:N/AC:M/Au:S/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2011-1058
BugTraq ID: 46476
http://www.securityfocus.com/bid/46476
Debian Security Information: DSA-2321 (Google Search)
http://www.debian.org/security/2011/dsa-2321
http://lists.fedoraproject.org/pipermail/package-announce/2011-March/055116.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-March/055124.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-March/054544.html
http://secunia.com/advisories/43413
http://secunia.com/advisories/43665
http://secunia.com/advisories/50885
http://www.ubuntu.com/usn/USN-1604-1
http://www.vupen.com/english/advisories/2011/0455
http://www.vupen.com/english/advisories/2011/0571
http://www.vupen.com/english/advisories/2011/0588
XForce ISS Database: moinmoin-refuri-xss(65545)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65545
Common Vulnerability Exposure (CVE) ID: CVE-2012-4404
Debian Security Information: DSA-2538 (Google Search)
http://www.debian.org/security/2012/dsa-2538
http://www.openwall.com/lists/oss-security/2012/09/04/4
http://www.openwall.com/lists/oss-security/2012/09/05/2
http://secunia.com/advisories/50474
http://secunia.com/advisories/50496
CopyrightCopyright (c) 2012 Greenbone Networks GmbH

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.