CVE-2012-0148
published 2012-02-14CVE-2012-0148: afd.sys in the Ancillary Function Driver in Microsoft Windows XP SP2, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and…
PriorityP432high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
1.66%
74.0th percentile
afd.sys in the Ancillary Function Driver in Microsoft Windows XP SP2, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 on 64-bit platforms does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application, aka "AfdPoll Elevation of Privilege Vulnerability."
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_server_2008 | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-5647 openshift-origin-node-util: restorer.php arbitrary URL redirection
bugzilla·2012-12-18·CVSS 5.8
CVE-2012-5647 [MEDIUM] CVE-2012-5647 openshift-origin-node-util: restorer.php arbitrary URL redirection
CVE-2012-5647 openshift-origin-node-util: restorer.php arbitrary URL redirection
Michael Scherer ([email protected]) reports:
the file https://github.com/openshift/origin-server/blob/master/node-util/www/html/restorer.php
used to restore application after being idle fails to safely handle user
supplied data that is later used in the HTTP headers for the Location:
value which can then result in request redirection to an arbitrary page.
Discussion:
Created attachment 665755
CVE-2012-5647-restorer.php.patch
---
Acknowledgements:
This issue was discovered by Michael Scherer of the Red Hat Regional IT team.
---
This issue has been addressed in following products:
RHEL 6 Version of OpenShift Enterprise
Via RHSA-2013:0148 https://rhn.redhat.com/errata/RHSA-2013-0148.html
---
This i
Bugzilla
CVE-2012-5646 openshift-origin-node-util: restorer.php preg_match shell code injection
bugzilla·2012-12-18·CVSS 7.5
CVE-2012-5646 [HIGH] CVE-2012-5646 openshift-origin-node-util: restorer.php preg_match shell code injection
CVE-2012-5646 openshift-origin-node-util: restorer.php preg_match shell code injection
Michael Scherer ([email protected]) reports:
the file https://github.com/openshift/origin-server/blob/master/node-util/www/html/restorer.php
used to restore application after being idle fails to safely handle user
supplied data that is later used on the command line.
Discussion:
Created attachment 665754
CVE-2012-5646-restorer.php.patch
---
Acknowledgements:
This issue was discovered by Michael Scherer of the Red Hat Regional IT team.
---
This issue has been addressed in following products:
RHEL 6 Version of OpenShift Enterprise
Via RHSA-2013:0148 https://rhn.redhat.com/errata/RHSA-2013-0148.html
---
This issue has been addressed in OpenShift Online.
http://www.us-cert.gov/cas/techalerts/TA12-045A.htmlhttps://docs.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-009https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14852http://www.us-cert.gov/cas/techalerts/TA12-045A.htmlhttps://docs.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-009https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14852
2012-02-14
Published