4.3
CVE-2012-6581
- EPSS 0.4%
- Published 24.07.2013 12:01:45
- Last modified 11.04.2025 00:51:21
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Best Practical Solutions RT 3.8.x before 3.8.15 and 4.0.x before 4.0.8, when GnuPG is enabled, allows remote attackers to bypass intended restrictions on reading keys in the product's keyring, and trigger outbound e-mail messages signed by an arbitrary stored secret key, by leveraging a UI e-mail signing privilege.
Data is provided by the National Vulnerability Database (NVD)
Bestpractical ≫ Request Tracker Version3.8.3
Bestpractical ≫ Request Tracker Version3.8.4
Bestpractical ≫ Request Tracker Version3.8.7
Bestpractical ≫ Request Tracker Version3.8.9
Bestpractical ≫ Request Tracker Version3.8.10
Bestpractical ≫ Request Tracker Version3.8.11
Bestpractical ≫ Request Tracker Version3.8.12
Bestpractical ≫ Request Tracker Version3.8.13
Bestpractical ≫ Request Tracker Version3.8.14
Bestpractical ≫ Request Tracker Version4.0.0
Bestpractical ≫ Request Tracker Version4.0.1
Bestpractical ≫ Request Tracker Version4.0.2
Bestpractical ≫ Request Tracker Version4.0.3
Bestpractical ≫ Request Tracker Version4.0.4
Bestpractical ≫ Request Tracker Version4.0.5
Bestpractical ≫ Request Tracker Version4.0.6
Bestpractical ≫ Request Tracker Version4.0.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.4% | 0.574 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|