CVE-2012-1236
Published Mar 19, 2012
Last updated 12 years ago
Overview
- Description
- Multiple cross-site request forgery (CSRF) vulnerabilities in Janetter before 3.3.0.0 (aka 3.3.0) allow remote attackers to hijack the authentication of arbitrary users for requests that (1) tweet, (2) upload an image file, or (3) execute arbitrary commands.
- Source
- vultures@jpcert.or.jp
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-352
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:janetter:janetter:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "70F7E539-A365-421F-A413-D3E9CFF2CDDA", "versionEndIncluding": "3.2.1.1" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.0.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4EF5A272-54B4-44D6-BC1A-CC4939ABBA3B" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B05F0626-A813-4961-BD70-5497A0D25F92" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.2.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2D4A13C5-DF14-4125-9447-35D35A596554" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.2.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC0351BB-119B-4F90-8FB1-D7DABB6E3438" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.3.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FAFFC0AF-F1EA-448E-AB44-341C8587C73C" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.4.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E86E42E3-9332-44FC-ADBD-DD7A528B00E8" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.5.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2F62C82D-6322-48E3-A085-B9DEDB9D43DC" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.6.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A109C688-CE68-47E0-85BE-CD974B195F1C" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.6.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2860D7E0-0892-47F9-83E9-6A84F1FC8441" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.6.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A3D267E6-4DA2-40E2-AC71-A4FC155645B2" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.6.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CC80B811-3AAF-43DB-87C5-B7C0300820F3" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.7.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10035437-E71F-45AC-A3EE-5A6630B022C1" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.7.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B4AA11F5-C9E9-4CB0-AA3C-C7E68D9330F3" }, { "criteria": "cpe:2.3:a:janetter:janetter:1.7.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9B30665A-44A4-48B1-A453-DB991A3E3723" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.0.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6A5ACFA-F2CB-4B31-8A5C-C1B6330658E8" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.0.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D984E1E-0C7A-4C76-BE6A-55F318ACE6C9" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.0.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "13BADFB8-56E9-420B-A49A-35E3E4696570" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.0.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9EAC813F-818C-410E-A3BB-6A08D13747F7" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D93116E8-B2A2-4D99-9097-2E08F35DC0CD" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.1.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E99DCCE4-FFCE-4B20-AEED-84DC93B7C213" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "98C6DAC0-355C-4DA4-89BE-2A37B2E328B7" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.1.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "218A1B5F-ED03-47D1-BBDF-70C1C894499A" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.2.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B13B91D-160E-44EF-8331-C01FFAEB17AC" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.3.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "204A8751-9445-4301-B40E-3192481312A0" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.4.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3BD7BD48-E3AF-4CC5-BB8F-AEC6BE38F34D" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.5.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CFA1D69F-217B-48B8-9C85-3E76E827534A" }, { "criteria": "cpe:2.3:a:janetter:janetter:2.5.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9179F06E-B234-4545-92A2-C2ACCD95BF07" }, { "criteria": "cpe:2.3:a:janetter:janetter:3.0.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B1FE5A8-99D9-42D7-8281-942A7439E3B1" }, { "criteria": "cpe:2.3:a:janetter:janetter:3.1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "488902C9-FC8C-4509-A83A-4DC8F4A2BFE8" }, { "criteria": "cpe:2.3:a:janetter:janetter:3.1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7FFE006F-1771-4B61-A1F4-C019D774743A" }, { "criteria": "cpe:2.3:a:janetter:janetter:3.1.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2601E75B-6D68-4D9D-B1EB-921CDC320D14" }, { "criteria": "cpe:2.3:a:janetter:janetter:3.2.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C240B84A-130B-4446-85B8-20F220F7B06F" }, { "criteria": "cpe:2.3:a:janetter:janetter:3.2.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "24462B5E-B0B4-4DDD-8FB2-61A8D60C263C" } ], "operator": "OR" } ] } ]