CVE-2011-5214
Published Oct 25, 2012
Last updated 7 years ago
Overview
- Description
- Multiple cross-site scripting (XSS) vulnerabilities in BrowserCRM 5.100.01 and earlier allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) index.php, (2) modules/admin/admin_module_index.php, or (3) modules/calendar/customise_calendar_times.php; login[] parameter to (4) index.php or (5) pub/clients.php; or framed parameter to (6) licence/index.php or (7) licence/view.php.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:browsercrm:browsercrm:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5EB1DE2-5E1C-41B9-A101-6A18C1E26A85", "versionEndIncluding": "5.100.01" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.604.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D67A8D1F-109F-45E6-85DC-C61BD0BA507F" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.605.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CD5AA3DE-863D-499D-9B45-1C9D6C56A481" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.607.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8E067059-D766-4081-BED9-8416CF0C29AF" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.610.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B24587D8-FA90-4025-BD56-076C6A3CCA3B" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.611.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B76B648A-76B5-433C-90B0-123ED8B1CC69" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.612.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFC14F98-C88F-4068-8ACE-833EC872CAFA" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.614.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E6349DD1-EA63-4929-823D-2686D10DF0B5" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.615.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "963FE86D-C3F0-46CC-9AC0-F0EE77EEF181" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.615.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5A4E64EA-B3F9-49D8-B60C-B9E169935F14" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.616.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "83F796FC-AA10-4445-8147-831EFC20F1EF" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.617.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67DD75C2-2DB7-4006-BCBE-E0B9DBCDAD97" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.619.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC988FDF-47B5-4D78-A5BB-11FD77E8562B" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.620.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "51953D35-E0A7-47EF-A465-56A6BCFF83F3" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.622.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA58DAAF-FDDC-4511-B3D4-47767BF66957" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.624.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B910BB1C-488D-46A0-B718-A78428C4F7F0" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.624.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "947E7D31-F9B7-4C62-9E33-B86779B78C6C" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.624.50:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C2E0F011-81C2-40B5-A728-8248DBD9882A" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.624.60:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7AD6290A-5E78-4005-B7BD-9424FC312036" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.624.70:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C533BBE2-6095-4233-ACA5-C1FFA0152F38" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.624.80:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "15ED68F7-6C70-455E-BC1F-DE69AFD2344D" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.624.90:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8D916EE2-E6F2-407D-B811-50FBCE5913FE" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.691.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B301E857-2BDE-4822-A0AF-32BFF0C21146" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:4.999.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8A4370DB-FD0E-4FF4-AD24-5FEE151B016B" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:5.000.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8F65F6CD-CDBB-4314-96B8-E996F9FDF3EC" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:5.000.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "088474B0-5252-40F3-84A4-CC7F2E5EBFFD" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:5.001.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D593C0EC-64D1-425F-B18D-151A34FB18AA" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:5.002.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B0D6FCD9-0850-4656-87B0-C73999BFF775" }, { "criteria": "cpe:2.3:a:browsercrm:browsercrm:5.100.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "453FA387-F326-470C-BE5B-8F79A8C18CED" } ], "operator": "OR" } ] } ]