CVE-2010-2276
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The default configuration of the build process in Dojo 0.4.x before 0.4.4, 1.0.x before 1.0.3, 1.1.x before 1.1.2, 1.2.x before 1.2.4, 1.3.x before 1.3.3, and 1.4.x before 1.4.2 has the copyTests=true and mini=false options, which makes it easier for remote attackers to have an unspecified impact via a request to a (1) test or (2) demo component.
La configuración por defecto del proceso de generación en Dojo v0.4.x antes de v0.4.4, v1.0.x antes de v1.0.3, v1.1.x antes de v1.1.2, v1.2.x antes de v1.2.4, v1.3.x antes de v1.3.3, y v1.4.x antes de v1.4.2 tiene las opciones copyTests = true y mini opciones = false, lo que facilita a los atacantes remotos tener un impacto no especificado a través de una solicitud a (1) una prueba o (2) una demo.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2010-06-14 CVE Reserved
- 2010-06-14 CVE Published
- 2024-09-17 CVE Updated
- 2024-09-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-16: Configuration
CAPEC
References (12)
URL | Tag | Source |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21431472 | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://dojotoolkit.org/blog/post/dylan/2010/03/dojo-security-advisory | 2010-06-16 |
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/38964 | 2010-06-16 | |
http://secunia.com/advisories/40007 | 2010-06-16 | |
http://www-1.ibm.com/support/docview.wss?uid=swg1LO50833 | 2010-06-16 | |
http://www-1.ibm.com/support/docview.wss?uid=swg1LO50849 | 2010-06-16 | |
http://www-1.ibm.com/support/docview.wss?uid=swg1LO50856 | 2010-06-16 | |
http://www-1.ibm.com/support/docview.wss?uid=swg1LO50896 | 2010-06-16 | |
http://www-1.ibm.com/support/docview.wss?uid=swg1LO50932 | 2010-06-16 | |
http://www-1.ibm.com/support/docview.wss?uid=swg1LO50958 | 2010-06-16 | |
http://www-1.ibm.com/support/docview.wss?uid=swg1LO50994 | 2010-06-16 | |
http://www.vupen.com/english/advisories/2010/1281 | 2010-06-16 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 0.4.0 Search vendor "Dojotoolkit" for product "Dojo" and version "0.4.0" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 0.4.1 Search vendor "Dojotoolkit" for product "Dojo" and version "0.4.1" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 0.4.2 Search vendor "Dojotoolkit" for product "Dojo" and version "0.4.2" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 0.4.3 Search vendor "Dojotoolkit" for product "Dojo" and version "0.4.3" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.0 Search vendor "Dojotoolkit" for product "Dojo" and version "1.0" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.0.1 Search vendor "Dojotoolkit" for product "Dojo" and version "1.0.1" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.0.2 Search vendor "Dojotoolkit" for product "Dojo" and version "1.0.2" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.1 Search vendor "Dojotoolkit" for product "Dojo" and version "1.1" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.1.1 Search vendor "Dojotoolkit" for product "Dojo" and version "1.1.1" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.2 Search vendor "Dojotoolkit" for product "Dojo" and version "1.2" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.2.1 Search vendor "Dojotoolkit" for product "Dojo" and version "1.2.1" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.2.2 Search vendor "Dojotoolkit" for product "Dojo" and version "1.2.2" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.2.3 Search vendor "Dojotoolkit" for product "Dojo" and version "1.2.3" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.3 Search vendor "Dojotoolkit" for product "Dojo" and version "1.3" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.3.1 Search vendor "Dojotoolkit" for product "Dojo" and version "1.3.1" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.3.2 Search vendor "Dojotoolkit" for product "Dojo" and version "1.3.2" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.4 Search vendor "Dojotoolkit" for product "Dojo" and version "1.4" | - |
Affected
| ||||||
Dojotoolkit Search vendor "Dojotoolkit" | Dojo Search vendor "Dojotoolkit" for product "Dojo" | 1.4.1 Search vendor "Dojotoolkit" for product "Dojo" and version "1.4.1" | - |
Affected
|