CVE-2012-2662
Summary
| CVE | CVE-2012-2662 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2012-08-13 20:55:00 UTC |
| Updated | 2023-02-13 00:25:00 UTC |
| Description | Multiple cross-site scripting (XSS) vulnerabilities in Red Hat Certificate System (RHCS) before 8.1.1 and Dogtag Certificate System allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to the (1) System Agent or (2) End Entity pages. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Redhat | Certificate System | 7.1 | All | All | All |
| Application | Redhat | Certificate System | 7.2 | All | All | All |
| Application | Redhat | Certificate System | 7.3 | All | All | All |
| Application | Redhat | Certificate System | 8 | All | All | All |
| Application | Redhat | Certificate System | 8.0 | All | All | All |
| Application | Redhat | Certificate System | 7.1 | All | All | All |
| Application | Redhat | Certificate System | 7.2 | All | All | All |
| Application | Redhat | Certificate System | 7.3 | All | All | All |
| Application | Redhat | Certificate System | 8 | All | All | All |
| Application | Redhat | Certificate System | 8.0 | All | All | All |
| Application | Redhat | Certificate System | All | All | All | All |
| Application | Redhat | Dogtag Certificate System | All | All | All | All |
| Application | Redhat | Dogtag Certificate System | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Red Hat Certificate System Multiple Cross Site Scripting and Security Bypass Vulnerabilities | BID | www.securityfocus.com | |
| Red Hat Customer Portal | MISC | access.redhat.com | |
| Red Hat Customer Portal | MISC | access.redhat.com | |
| Red Hat Customer Portal | REDHAT | rhn.redhat.com | Vendor Advisory |
| 84099 | OSVDB | osvdb.org | |
| Security Advisory SA50013 - Red Hat Certificate System Cross-Site Scripting and Security Bypass Vulnerabilities - Secunia | SECUNIA | secunia.com | Vendor Advisory |
| 826646 – (CVE-2012-2662) CVE-2012-2662 Certificate System: multiple XSS flaws | MISC | bugzilla.redhat.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Red Hat Customer Portal | REDHAT | rhn.redhat.com | |
| access.redhat.com | CVE-2012-2662 | MISC | access.redhat.com | |
| Red Hat Certificate System Bugs Let Remote Users Conduct Cross-Site Scripting and Denial of Service Attacks - SecurityTracker | SECTRACK | www.securitytracker.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.