CVE-2012-5053
Published Mar 7, 2013
Last updated a year ago
Overview
- Description
- Cross-site scripting (XSS) vulnerability in the Receiver Web User Interface on Trimble Infrastructure GNSS Series Receivers NetR3, NetR5, NetR8, and NetR9 before 4.70, and NetRS before 1.3-2, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:trimble:infrastructure_gnss_series_receiver_netr3:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A7269D1C-1741-4F55-9ED6-B7ED12A6DE07" }, { "criteria": "cpe:2.3:h:trimble:infrastructure_gnss_series_receiver_netr5:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "97AD5D8A-5BFD-4E08-80BC-3040DE046923" }, { "criteria": "cpe:2.3:h:trimble:infrastructure_gnss_series_receiver_netr8:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "69F2CB62-C0C2-49DB-BFB9-802E5C523702" }, { "criteria": "cpe:2.3:h:trimble:infrastructure_gnss_series_receiver_netr9:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "45D8441F-5D56-4D41-9147-C7F409A1E212" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:trimble:infrastructure_gnss_series_receiver_firmware:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4746011B-CA81-4D29-8090-CBBB3727C248", "versionEndExcluding": "4.7.0" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:trimble:infrastructure_netrs_receiver:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D0DE71B3-8BDE-473E-A82E-E4A5291F1042" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:trimble:infrastructure_netrs_receiver_firmware:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E720C8A9-EF01-4D00-93D7-1F4650E4B30A", "versionEndExcluding": "1.3-2" } ], "operator": "OR" } ], "operator": "AND" } ]