Lucene search

K
nvd[email protected]NVD:CVE-2014-2856
HistoryApr 18, 2014 - 2:55 p.m.

CVE-2014-2856

2014-04-1814:55:26
CWE-79
web.nvd.nist.gov
3

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

7.2

Confidence

High

EPSS

0.009

Percentile

82.4%

Cross-site scripting (XSS) vulnerability in scheduler/client.c in Common Unix Printing System (CUPS) before 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the URL path, related to the is_path_absolute function.

Affected configurations

Nvd
Node
applecupsRange1.7.1
OR
applecupsMatch1.1
OR
applecupsMatch1.1.1
OR
applecupsMatch1.1.2
OR
applecupsMatch1.1.3
OR
applecupsMatch1.1.4
OR
applecupsMatch1.1.5
OR
applecupsMatch1.1.5-1
OR
applecupsMatch1.1.5-2
OR
applecupsMatch1.1.6
OR
applecupsMatch1.1.6-1
OR
applecupsMatch1.1.6-2
OR
applecupsMatch1.1.6-3
OR
applecupsMatch1.1.7
OR
applecupsMatch1.1.8
OR
applecupsMatch1.1.9
OR
applecupsMatch1.1.9-1
OR
applecupsMatch1.1.10
OR
applecupsMatch1.1.10-1
OR
applecupsMatch1.1.11
OR
applecupsMatch1.1.12
OR
applecupsMatch1.1.13
OR
applecupsMatch1.1.14
OR
applecupsMatch1.1.15
OR
applecupsMatch1.1.16
OR
applecupsMatch1.1.17
OR
applecupsMatch1.1.18
OR
applecupsMatch1.1.19
OR
applecupsMatch1.1.19rc1
OR
applecupsMatch1.1.19rc2
OR
applecupsMatch1.1.19rc3
OR
applecupsMatch1.1.19rc4
OR
applecupsMatch1.1.19rc5
OR
applecupsMatch1.1.20
OR
applecupsMatch1.1.20rc1
OR
applecupsMatch1.1.20rc2
OR
applecupsMatch1.1.20rc3
OR
applecupsMatch1.1.20rc4
OR
applecupsMatch1.1.20rc5
OR
applecupsMatch1.1.20rc6
OR
applecupsMatch1.1.21
OR
applecupsMatch1.1.21rc1
OR
applecupsMatch1.1.21rc2
OR
applecupsMatch1.1.22
OR
applecupsMatch1.1.22rc1
OR
applecupsMatch1.1.22rc2
OR
applecupsMatch1.1.23
OR
applecupsMatch1.1.23rc1
OR
applecupsMatch1.2b1
OR
applecupsMatch1.2b2
OR
applecupsMatch1.2rc1
OR
applecupsMatch1.2rc2
OR
applecupsMatch1.2rc3
OR
applecupsMatch1.2.0
OR
applecupsMatch1.2.1
OR
applecupsMatch1.2.2
OR
applecupsMatch1.2.3
OR
applecupsMatch1.2.4
OR
applecupsMatch1.2.5
OR
applecupsMatch1.2.6
OR
applecupsMatch1.2.7
OR
applecupsMatch1.2.8
OR
applecupsMatch1.2.9
OR
applecupsMatch1.2.10
OR
applecupsMatch1.2.11
OR
applecupsMatch1.2.12
OR
applecupsMatch1.3b1
OR
applecupsMatch1.3rc1
OR
applecupsMatch1.3rc2
OR
applecupsMatch1.3.0
OR
applecupsMatch1.3.1
OR
applecupsMatch1.3.2
OR
applecupsMatch1.3.3
OR
applecupsMatch1.3.4
OR
applecupsMatch1.3.5
OR
applecupsMatch1.3.6
OR
applecupsMatch1.3.7
OR
applecupsMatch1.3.8
OR
applecupsMatch1.3.9
OR
applecupsMatch1.3.10
OR
applecupsMatch1.3.11
OR
applecupsMatch1.4b1
OR
applecupsMatch1.4b2
OR
applecupsMatch1.4b3
OR
applecupsMatch1.4rc1
OR
applecupsMatch1.4.0
OR
applecupsMatch1.4.1
OR
applecupsMatch1.4.2
OR
applecupsMatch1.4.3
OR
applecupsMatch1.4.4
OR
applecupsMatch1.4.5
OR
applecupsMatch1.4.6
OR
applecupsMatch1.4.7
OR
applecupsMatch1.4.8
OR
applecupsMatch1.5b1
OR
applecupsMatch1.5b2
OR
applecupsMatch1.5rc1
OR
applecupsMatch1.5.0
OR
applecupsMatch1.5.1
OR
applecupsMatch1.5.2
OR
applecupsMatch1.5.3
OR
applecupsMatch1.5.4
OR
applecupsMatch1.6b1
OR
applecupsMatch1.6rc1
OR
applecupsMatch1.6.1
OR
applecupsMatch1.6.2
OR
applecupsMatch1.6.3
OR
applecupsMatch1.6.4
OR
applecupsMatch1.7rc1
OR
applecupsMatch1.7.0
OR
applecupsMatch1.7.1b1
VendorProductVersionCPE
applecups*cpe:2.3:a:apple:cups:*:*:*:*:*:*:*:*
applecups1.1cpe:2.3:a:apple:cups:1.1:*:*:*:*:*:*:*
applecups1.1.1cpe:2.3:a:apple:cups:1.1.1:*:*:*:*:*:*:*
applecups1.1.2cpe:2.3:a:apple:cups:1.1.2:*:*:*:*:*:*:*
applecups1.1.3cpe:2.3:a:apple:cups:1.1.3:*:*:*:*:*:*:*
applecups1.1.4cpe:2.3:a:apple:cups:1.1.4:*:*:*:*:*:*:*
applecups1.1.5cpe:2.3:a:apple:cups:1.1.5:*:*:*:*:*:*:*
applecups1.1.5-1cpe:2.3:a:apple:cups:1.1.5-1:*:*:*:*:*:*:*
applecups1.1.5-2cpe:2.3:a:apple:cups:1.1.5-2:*:*:*:*:*:*:*
applecups1.1.6cpe:2.3:a:apple:cups:1.1.6:*:*:*:*:*:*:*
Rows per page:
1-10 of 1111

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

7.2

Confidence

High

EPSS

0.009

Percentile

82.4%