7.5
CVE-2012-5385
- EPSS 1.27%
- Veröffentlicht 11.10.2012 15:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
install/index.php in Craig Knudsen WebCalendar before 1.2.5 allows remote attackers to modify settings.php and possibly execute arbitrary code via vectors related to the user theme preference.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Webcalendar Project ≫ Webcalendar Version1.0 Updaterc1
Webcalendar Project ≫ Webcalendar Version1.0 Updaterc2
Webcalendar Project ≫ Webcalendar Version1.0 Updaterc3
Webcalendar Project ≫ Webcalendar Version1.1.1
Webcalendar Project ≫ Webcalendar Version1.1.2
Webcalendar Project ≫ Webcalendar Version1.1.3
Webcalendar Project ≫ Webcalendar Version1.1.4
Webcalendar Project ≫ Webcalendar Version1.1.5
Webcalendar Project ≫ Webcalendar Version1.1.6
Webcalendar Project ≫ Webcalendar Version1.2 Updateb1
Webcalendar Project ≫ Webcalendar Version1.2.0
Webcalendar Project ≫ Webcalendar Version1.2.1
Webcalendar Project ≫ Webcalendar Version1.2.2
Webcalendar Project ≫ Webcalendar Version1.2.3
Webcalendar Project ≫ Webcalendar Version1.2.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.27% | 0.776 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|