Lucene search

K
cveMitreCVE-2012-4037
HistoryAug 15, 2012 - 8:55 p.m.

CVE-2012-4037

2012-08-1520:55:03
CWE-79
mitre
web.nvd.nist.gov
25
cve
2012
4037
xss
vulnerabilities
transmission
web client
nvd

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:N/I:P/A:N

AI Score

5.5

Confidence

High

EPSS

0.004

Percentile

74.0%

Multiple cross-site scripting (XSS) vulnerabilities in the web client in Transmission before 2.61 allow remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) created by, or (3) name field in a torrent file.

Affected configurations

Nvd
Node
transmissionbttransmissionRange2.60
OR
transmissionbttransmissionMatch0.1
OR
transmissionbttransmissionMatch0.2
OR
transmissionbttransmissionMatch0.3
OR
transmissionbttransmissionMatch0.4
OR
transmissionbttransmissionMatch0.5
OR
transmissionbttransmissionMatch0.6
OR
transmissionbttransmissionMatch0.6.1
OR
transmissionbttransmissionMatch0.70
OR
transmissionbttransmissionMatch0.71
OR
transmissionbttransmissionMatch0.72
OR
transmissionbttransmissionMatch0.80
OR
transmissionbttransmissionMatch0.81
OR
transmissionbttransmissionMatch0.82
OR
transmissionbttransmissionMatch0.90
OR
transmissionbttransmissionMatch0.91
OR
transmissionbttransmissionMatch0.92
OR
transmissionbttransmissionMatch0.93
OR
transmissionbttransmissionMatch0.94
OR
transmissionbttransmissionMatch0.95
OR
transmissionbttransmissionMatch0.96
OR
transmissionbttransmissionMatch1.00
OR
transmissionbttransmissionMatch1.01
OR
transmissionbttransmissionMatch1.02
OR
transmissionbttransmissionMatch1.2
OR
transmissionbttransmissionMatch1.03
OR
transmissionbttransmissionMatch1.04
OR
transmissionbttransmissionMatch1.05
OR
transmissionbttransmissionMatch1.06
OR
transmissionbttransmissionMatch1.10
OR
transmissionbttransmissionMatch1.11
OR
transmissionbttransmissionMatch1.20
OR
transmissionbttransmissionMatch1.21
OR
transmissionbttransmissionMatch1.22
OR
transmissionbttransmissionMatch1.30
OR
transmissionbttransmissionMatch1.31
OR
transmissionbttransmissionMatch1.32
OR
transmissionbttransmissionMatch1.33
OR
transmissionbttransmissionMatch1.34
OR
transmissionbttransmissionMatch1.40
OR
transmissionbttransmissionMatch1.41
OR
transmissionbttransmissionMatch1.42
OR
transmissionbttransmissionMatch1.50
OR
transmissionbttransmissionMatch1.51
OR
transmissionbttransmissionMatch1.52
OR
transmissionbttransmissionMatch1.53
OR
transmissionbttransmissionMatch1.54
OR
transmissionbttransmissionMatch1.60
OR
transmissionbttransmissionMatch1.61
OR
transmissionbttransmissionMatch1.70
OR
transmissionbttransmissionMatch1.71
OR
transmissionbttransmissionMatch1.72
OR
transmissionbttransmissionMatch1.73
OR
transmissionbttransmissionMatch1.74
OR
transmissionbttransmissionMatch1.75
OR
transmissionbttransmissionMatch1.76
OR
transmissionbttransmissionMatch1.77
OR
transmissionbttransmissionMatch1.80
OR
transmissionbttransmissionMatch1.81
OR
transmissionbttransmissionMatch1.82
OR
transmissionbttransmissionMatch1.83
OR
transmissionbttransmissionMatch1.90
OR
transmissionbttransmissionMatch1.91
OR
transmissionbttransmissionMatch1.92
OR
transmissionbttransmissionMatch1.93
OR
transmissionbttransmissionMatch2.00
OR
transmissionbttransmissionMatch2.01
OR
transmissionbttransmissionMatch2.02
OR
transmissionbttransmissionMatch2.03
OR
transmissionbttransmissionMatch2.04
OR
transmissionbttransmissionMatch2.10
OR
transmissionbttransmissionMatch2.11
OR
transmissionbttransmissionMatch2.12
OR
transmissionbttransmissionMatch2.13
OR
transmissionbttransmissionMatch2.20
OR
transmissionbttransmissionMatch2.21
OR
transmissionbttransmissionMatch2.22
OR
transmissionbttransmissionMatch2.30
OR
transmissionbttransmissionMatch2.31
OR
transmissionbttransmissionMatch2.32
OR
transmissionbttransmissionMatch2.33
OR
transmissionbttransmissionMatch2.40
OR
transmissionbttransmissionMatch2.41
OR
transmissionbttransmissionMatch2.42
OR
transmissionbttransmissionMatch2.50
OR
transmissionbttransmissionMatch2.51
OR
transmissionbttransmissionMatch2.52
VendorProductVersionCPE
transmissionbttransmission*cpe:2.3:a:transmissionbt:transmission:*:*:*:*:*:*:*:*
transmissionbttransmission0.1cpe:2.3:a:transmissionbt:transmission:0.1:*:*:*:*:*:*:*
transmissionbttransmission0.2cpe:2.3:a:transmissionbt:transmission:0.2:*:*:*:*:*:*:*
transmissionbttransmission0.3cpe:2.3:a:transmissionbt:transmission:0.3:*:*:*:*:*:*:*
transmissionbttransmission0.4cpe:2.3:a:transmissionbt:transmission:0.4:*:*:*:*:*:*:*
transmissionbttransmission0.5cpe:2.3:a:transmissionbt:transmission:0.5:*:*:*:*:*:*:*
transmissionbttransmission0.6cpe:2.3:a:transmissionbt:transmission:0.6:*:*:*:*:*:*:*
transmissionbttransmission0.6.1cpe:2.3:a:transmissionbt:transmission:0.6.1:*:*:*:*:*:*:*
transmissionbttransmission0.70cpe:2.3:a:transmissionbt:transmission:0.70:*:*:*:*:*:*:*
transmissionbttransmission0.71cpe:2.3:a:transmissionbt:transmission:0.71:*:*:*:*:*:*:*
Rows per page:
1-10 of 871

CVSS2

2.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:N/I:P/A:N

AI Score

5.5

Confidence

High

EPSS

0.004

Percentile

74.0%