CVE-2012-2648

Cross-site scripting (XSS) vulnerability in the GoodReader app 3.16 and earlier for iOS on the iPad, and 3.15.1 and earlier for iOS on the iPhone and iPod touch, allows remote attackers to inject arbitrary web script or HTML via vectors involving use of this app in conjunction with a web browser.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:goodiware:goodreader:*:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:1.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.4:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.5:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.5.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.6:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.7:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.7.4:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.8:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.8.4:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.1.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.1.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.2.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.3.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.3.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.4.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.4.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.5.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.5.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.6.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.6.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.7.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.7.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.8.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.9.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.11.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.11.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.12.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.13.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.13.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.14.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.14.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.15.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.15.1:-:*:*:*:iphone_os:*:*
cpe:2.3:h:apple:ipad:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:a:goodiware:goodreader:*:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:1.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.4:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.5:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.5.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.6:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.7:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.8.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.8.5:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.2.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.2.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.3.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.3.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.4.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.4.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.5.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.5.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.6.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.6.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.7.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.7.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.8.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.9.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.11.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.11.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.12.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.13.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.13.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.14.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.15.0:-:*:*:*:iphone_os:*:*
OR cpe:2.3:h:apple:ipod_touch:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:39

Type Values Removed Values Added
References () http://jvn.jp/en/jp/JVN01598734/index.html - () http://jvn.jp/en/jp/JVN01598734/index.html -
References () http://jvndb.jvn.jp/jvndb/JVNDB-2012-000073 - () http://jvndb.jvn.jp/jvndb/JVNDB-2012-000073 -

Information

Published : 2012-08-07 19:55

Updated : 2024-11-21 01:39


NVD link : CVE-2012-2648

Mitre link : CVE-2012-2648

CVE.ORG link : CVE-2012-2648


JSON object : View

Products Affected

apple

  • ipad
  • iphone_os
  • ipod_touch

goodiware

  • goodreader
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')