![]() |
Inicial ▼ Bookkeeping
Online ▼ Auditorias ▼
DNS
Administrado ▼
Acerca de DNS
Ordenar/Renovar
Preguntas Frecuentes
AUP
Dynamic DNS Clients
Configurar Dominios Dynamic DNS Update Password Monitoreo
de Redes ▼
Enterprise
Avanzado
Estándarr
Prueba
Preguntas Frecuentes
Resumen de Precio/Funciones
Ordenar
Muestras
Configure/Status Alert Profiles | ||
ID de Prueba: | 1.3.6.1.4.1.25623.1.0.804543 |
Categoría: | Web application abuses |
Título: | ClipBucket Multiple Vulnerabilities |
Resumen: | ClipBucket is prone to multiple vulnerabilities. |
Descripción: | Summary: ClipBucket is prone to multiple vulnerabilities. Vulnerability Insight: Input passed via multiple parameters to multiple scripts is not properly sanitised before being returned to the user. Please see the references for more information. Vulnerability Impact: Successful exploitation will allow attacker to execute arbitrary HTML or script code and manipulate SQL queries in the backend database allowing for the manipulation or disclosure of arbitrary data. Affected Software/OS: ClipBucket version 2.6, Other versions may also be affected. Solution: Apply the patch from the referenced link. CVSS Score: 7.5 CVSS Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P |
Referencia Cruzada: |
Common Vulnerability Exposure (CVE) ID: CVE-2012-6642 http://osvdb.org/78199 http://secunia.com/advisories/47474 Common Vulnerability Exposure (CVE) ID: CVE-2012-6643 BugTraq ID: 51321 http://www.securityfocus.com/bid/51321 http://packetstormsecurity.org/files/108489/clipbucket-sqlxss.txt http://osvdb.org/78201 http://osvdb.org/78202 XForce ISS Database: clipbucket-multiple-xss(72245) https://exchange.xforce.ibmcloud.com/vulnerabilities/72245 Common Vulnerability Exposure (CVE) ID: CVE-2012-6644 http://www.exploit-db.com/exploits/18341 http://osvdb.org/78193 http://osvdb.org/78194 http://osvdb.org/78195 http://osvdb.org/78196 http://osvdb.org/78197 http://osvdb.org/78198 http://osvdb.org/78200 |
Copyright | Copyright (C) 2014 Greenbone AG |
Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |