CVE-2011-4015
published 2012-05-02CVE-2011-4015: Cisco IOS 15.2S allows remote attackers to cause a denial of service (interface queue wedge) via malformed UDP traffic on port 465, aka Bug ID CSCts48300.
PriorityP422medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.22%
65.1th percentile
Cisco IOS 15.2S allows remote attackers to cause a denial of service (interface queue wedge) via malformed UDP traffic on port 465, aka Bug ID CSCts48300.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-5027 zabbix: Multiple cross-site scripting (XSS) vulnerabilities fixed in 1.8.10
bugzilla·2011-12-30·CVSS 4.3
CVE-2011-5027 [MEDIUM] CVE-2011-5027 zabbix: Multiple cross-site scripting (XSS) vulnerabilities fixed in 1.8.10
CVE-2011-5027 zabbix: Multiple cross-site scripting (XSS) vulnerabilities fixed in 1.8.10
CONFIRM:http://www.zabbix.com/rn1.8.10.php [Open URL]
CONFIRM:https://support.zabbix.com/browse/ZBX-4015 [Open URL]
OSVDB:77772
URL:http://osvdb.org/77772 [Open URL]
SECUNIA:47216
URL:http://secunia.com/advisories/47216 [Open URL]
Cross-site scripting (XSS) vulnerability in ZABBIX before 1.8.10
allows remote attackers to inject arbitrary web script or HTML via
unspecified vectors related to the profiler.
Discussion:
zabbix-1.8.10-1.fc15 has been pushed to the Fedora 15 stable repository. If problems still persist, please make note of it in this bug report.
---
zabbix-1.8.10-1.fc16 has been pushed to the Fedora 16 stable repository. If problems still persist, please make note of it in this bug re
Bugzilla
CVE-2011-4615 zabbix: persistent XSS flaws in 1.8.x
bugzilla·2011-12-16·CVSS 4.3
CVE-2011-4615 [MEDIUM] CVE-2011-4615 zabbix: persistent XSS flaws in 1.8.x
CVE-2011-4615 zabbix: persistent XSS flaws in 1.8.x
Zabbix 1.8.10rc1 was released [1] to correct persistant cross-site scripting vulnerabilities due to improper sanitization of the gname variable when creating user and host groups [2].
[1] http://www.zabbix.com/rn1.8.10rc1.php
[2] https://support.zabbix.com/browse/ZBX-4015
Discussion:
CVE requested:
http://www.openwall.com/lists/oss-security/2011/12/16/2
---
This was assigned the name CVE-2011-4615:
http://www.openwall.com/lists/oss-security/2011/12/16/3
---
Created zabbix tracking bugs for this issue
Affects: fedora-all [bug 768539]
Affects: epel-6 [bug 768540]
---
zabbix-1.8.10-1.fc15 has been pushed to the Fedora 15 stable repository. If problems still persist, please make note of it in this bug report.
---
zabbix-1.8.10-
2012-05-02
Published