Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-4730
HistoryNov 11, 2012 - 12:00 a.m.

CVE-2012-4730

2012-11-1100:00:00
ubuntu.com
ubuntu.com
9

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:S/C:P/I:N/A:N

EPSS

0.001

Percentile

46.1%

Request Tracker (RT) 3.8.x before 3.8.15 and 4.0.x before 4.0.8 allows
remote authenticated users with ModifySelf or AdminUser privileges to
inject arbitrary email headers and conduct phishing attacks or obtain
sensitive information via unknown vectors.

OSVersionArchitecturePackageVersionFilename
ubuntu10.04noarchrequest-tracker3.8< 3.8.7-1ubuntu2.3UNKNOWN
ubuntu11.10noarchrequest-tracker3.8< 3.8.10-1ubuntu0.1UNKNOWN
ubuntu12.04noarchrequest-tracker3.8< 3.8.11-1ubuntu0.1UNKNOWN

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:S/C:P/I:N/A:N

EPSS

0.001

Percentile

46.1%