CVE-2012-6344Cross-site Scripting in Zenworks Configuration Management

Severity
6.1MEDIUMNVD
EPSS
0.2%
top 54.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 25
Latest updateApr 23

Description

Novell ZENworks Configuration Management before 11.2.4 allows XSS.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-r53q-c2rv-6gmc: Novell ZENworks Configuration Management before 112022-04-23
CVEList
CVE-2012-6344: Novell ZENworks Configuration Management before 112020-01-25
CVE-2012-6344 — Cross-site Scripting | cvebase