Lucene search

K
nvd[email protected]NVD:CVE-2011-3199
HistoryMar 21, 2014 - 4:38 a.m.

CVE-2011-3199

2014-03-2104:38:53
CWE-79
web.nvd.nist.gov
6

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

5.4

Confidence

High

EPSS

0.001

Percentile

48.3%

Multiple cross-site scripting (XSS) vulnerabilities in Domain Technologie Control (DTC) before 0.34.1 allow remote authenticated users to inject arbitrary web script or HTML via the (1) message body of a support ticket or unspecified vectors to the (2) DNS and (3) MX form, as demonstrated by the “Domain root TXT record:” field.

Affected configurations

Nvd
Node
gplhostdomain_technologie_controlRange0.32.11
OR
gplhostdomain_technologie_controlMatch0.24.6
OR
gplhostdomain_technologie_controlMatch0.25.1
OR
gplhostdomain_technologie_controlMatch0.25.2
OR
gplhostdomain_technologie_controlMatch0.25.3
OR
gplhostdomain_technologie_controlMatch0.26.7
OR
gplhostdomain_technologie_controlMatch0.26.8
OR
gplhostdomain_technologie_controlMatch0.26.9
OR
gplhostdomain_technologie_controlMatch0.27.3
OR
gplhostdomain_technologie_controlMatch0.28.2
OR
gplhostdomain_technologie_controlMatch0.28.3
OR
gplhostdomain_technologie_controlMatch0.28.4
OR
gplhostdomain_technologie_controlMatch0.28.6
OR
gplhostdomain_technologie_controlMatch0.28.9
OR
gplhostdomain_technologie_controlMatch0.28.10
OR
gplhostdomain_technologie_controlMatch0.29.1
OR
gplhostdomain_technologie_controlMatch0.29.6
OR
gplhostdomain_technologie_controlMatch0.29.8
OR
gplhostdomain_technologie_controlMatch0.29.10
OR
gplhostdomain_technologie_controlMatch0.29.14
OR
gplhostdomain_technologie_controlMatch0.29.15
OR
gplhostdomain_technologie_controlMatch0.29.16
OR
gplhostdomain_technologie_controlMatch0.29.17
OR
gplhostdomain_technologie_controlMatch0.30.6
OR
gplhostdomain_technologie_controlMatch0.30.8
OR
gplhostdomain_technologie_controlMatch0.30.10
OR
gplhostdomain_technologie_controlMatch0.30.18
OR
gplhostdomain_technologie_controlMatch0.30.20
OR
gplhostdomain_technologie_controlMatch0.32.1
OR
gplhostdomain_technologie_controlMatch0.32.2
OR
gplhostdomain_technologie_controlMatch0.32.3
OR
gplhostdomain_technologie_controlMatch0.32.4
OR
gplhostdomain_technologie_controlMatch0.32.5
OR
gplhostdomain_technologie_controlMatch0.32.6
OR
gplhostdomain_technologie_controlMatch0.32.7
VendorProductVersionCPE
gplhostdomain_technologie_control*cpe:2.3:a:gplhost:domain_technologie_control:*:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.24.6cpe:2.3:a:gplhost:domain_technologie_control:0.24.6:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.25.1cpe:2.3:a:gplhost:domain_technologie_control:0.25.1:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.25.2cpe:2.3:a:gplhost:domain_technologie_control:0.25.2:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.25.3cpe:2.3:a:gplhost:domain_technologie_control:0.25.3:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.26.7cpe:2.3:a:gplhost:domain_technologie_control:0.26.7:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.26.8cpe:2.3:a:gplhost:domain_technologie_control:0.26.8:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.26.9cpe:2.3:a:gplhost:domain_technologie_control:0.26.9:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.27.3cpe:2.3:a:gplhost:domain_technologie_control:0.27.3:*:*:*:*:*:*:*
gplhostdomain_technologie_control0.28.2cpe:2.3:a:gplhost:domain_technologie_control:0.28.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 351

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

5.4

Confidence

High

EPSS

0.001

Percentile

48.3%