CVE-2012-2235
Published May 27, 2012
Last updated 12 years ago
Overview
- Description
- Cross-site scripting (XSS) vulnerability in Support Incident Tracker (SiT!) 3.65 and earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter to index.php, which is not properly handled in an error message.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D637BA4-17F7-45A1-9173-1D7A05E5C619", "versionEndIncluding": "3.65" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:1.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "50D641D2-158D-4570-B2E4-FFCF63A942DF" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:2.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CD0D1949-AB42-462D-A348-F9CDCDCFF9C2" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7CA68017-3E7C-4393-86F6-8E42EB0F3549" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.00:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F04128DD-1BBB-47B0-8CAC-8DBDFE647046" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.00:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6F228481-19D5-4E98-933F-5D1C5CC20008" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.00:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7A085965-4106-40BB-9374-374986E88AB0" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.01:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5EA97C93-F0DA-43DA-8BA2-706A1E541D97" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.02:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "194634B9-5EBF-4365-ADFB-BD56D6DBA827" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.03:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93CE290D-A031-40BB-AB85-9911C0F438FA" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.03a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E2CF1C2-DBCE-416A-9C0F-DC19BF7161F1" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.04a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E08CC85C-7D41-493D-BC81-A898EDE83B54" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.05:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8A0AD14E-31D8-4DA2-94D2-D7C3BFCE3396" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "48854537-091C-4350-A42E-8E6AA19A4C55" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.06:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2273ED90-763F-45BD-81B2-E20B5A011DEE" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.07:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A4807E76-3324-480C-BF17-85B5C94ED70B" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.45:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65028034-D504-49CF-A62B-827A7F86733E" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.45:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9E4CD2D0-66BF-4E95-B3AE-7598902B2C72" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.50:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2163711F-8830-471A-A9AE-C4B90DB1BC4C" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.50:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CF3D5C9C-05DE-44A1-AEC2-308E87D2E0CD" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.51:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7929BFDD-9FA8-422B-945D-6FEC46B89E69" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.60:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5567EF75-2161-4A74-AADE-109B3F0DFD26" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.61:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "228B6318-F28A-4CB7-A054-5CB1E1C75048" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.62:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "68D7980E-CA09-4A29-9901-47FE92A892E0" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.63:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "59E43ED2-A943-4D8C-AAD2-189647073814" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.63:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F2C5C37A-8952-47E9-A081-A0EBDC7E7AF6" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:3.64:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C04580AF-8B83-4F0C-BD04-DCCA1BAB8F1F" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:4.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "05AA74BB-D481-46E1-A609-C15DDA6958F9" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:7.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9300ECD3-C10E-49D3-8E37-4850635B3290" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:8.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "94C93EEC-EEF2-416A-97ED-EAEBBFB883C5" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:9.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BA1CB1EB-9BA8-445C-A322-741461CD4D45" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:10.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38294648-4298-48EE-9331-50585A97C6E8" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:11.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D4ED869A-4880-4D99-9138-429D07DF778C" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:14.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E5A892B-8A11-4E5B-B5A2-837FC7295B47" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:16.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2E0DCD82-24F9-4212-8AD6-340726E26C24" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:17.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9BB2AF8C-B1AC-4164-A389-EC8F1493FE81" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:18.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A8D4DABA-CDA4-4742-AD39-F48590D8A7C3" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:21.8.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F6771A58-D40C-456B-BF6A-282E8CF291FA" }, { "criteria": "cpe:2.3:a:sitracker:support_incident_tracker:31.07.00:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F396853A-7D77-44E2-9C51-E6FD65843871" } ], "operator": "OR" } ] } ]