CVE-2012-10003

A vulnerability, which was classified as problematic, has been found in ahmyi RivetTracker. This issue affects some unknown processing. The manipulation of the argument $_SERVER['PHP_SELF'] leads to cross site scripting. The attack may be initiated remotely. The patch is named f053c5cc2bc44269b0496b5f275e349928a92ef9. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217271.
References
Link Resource
https://github.com/ahmyi/rivettracker/commit/f053c5cc2bc44269b0496b5f275e349928a92ef9 Patch Third Party Advisory
https://github.com/ahmyi/rivettracker/pull/1 Patch Third Party Advisory
https://vuldb.com/?ctiid.217271 Permissions Required Third Party Advisory VDB Entry
https://vuldb.com/?id.217271 Permissions Required Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:rivettracker_project:rivettracker:*:*:*:*:*:*:*:*

History

12 Oct 2023, 09:15

Type Values Removed Values Added
Summary A vulnerability, which was classified as problematic, has been found in ahmyi RivetTracker. This issue affects some unknown processing. The manipulation of the argument $_SERVER['PHP_SELF'] leads to cross site scripting. The attack may be initiated remotely. The name of the patch is f053c5cc2bc44269b0496b5f275e349928a92ef9. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217271. A vulnerability, which was classified as problematic, has been found in ahmyi RivetTracker. This issue affects some unknown processing. The manipulation of the argument $_SERVER['PHP_SELF'] leads to cross site scripting. The attack may be initiated remotely. The patch is named f053c5cc2bc44269b0496b5f275e349928a92ef9. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217271.

Information

Published : 2023-01-03 12:15

Updated : 2024-05-17 00:51


NVD link : CVE-2012-10003

Mitre link : CVE-2012-10003

CVE.ORG link : CVE-2012-10003


JSON object : View

Products Affected

rivettracker_project

  • rivettracker
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')