CVE-2012-4484
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Cross-site scripting (XSS) vulnerability in the administrative interface in the Campaign Monitor module before 6.x-2.5 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this refers to an issue in an independently developed Drupal module, and NOT an issue in the Campaign Monitor software itself (described on the campaignmonitor.com web site).
Vulnerabilidad Cross-Site Scripting (XSS) en la interfaz administrativa en el módulo Campaign Monitor en versiones anteriores a la 6.x-2.5 para Drupal permite que los atacantes remotos inyecten scripts web o HTML arbitrarios mediante vectores sin especificar. NOTA: esto se refiera a un problema en un módulo de Drupal desarrollado de manera independiente y NO en el software Campaign Monitor (descrito en el sitio web campaignmonitor.com).
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-08-21 CVE Reserved
- 2012-10-31 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://www.openwall.com/lists/oss-security/2012/10/04/6 | Mailing List | |
http://www.openwall.com/lists/oss-security/2012/10/07/1 | Mailing List |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://drupal.org/node/1689790 | 2018-06-27 | |
http://drupal.org/node/1691446 | 2018-06-27 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Trexart Search vendor "Trexart" | Campaignmonitor Search vendor "Trexart" for product "Campaignmonitor" | <= 6.x-2.4 Search vendor "Trexart" for product "Campaignmonitor" and version " <= 6.x-2.4" | - |
Affected
| in | Drupal Search vendor "Drupal" | Drupal Search vendor "Drupal" for product "Drupal" | - | - |
Safe
|
Trexart Search vendor "Trexart" | Campaignmonitor Search vendor "Trexart" for product "Campaignmonitor" | 6.x-1.1 Search vendor "Trexart" for product "Campaignmonitor" and version "6.x-1.1" | - |
Affected
| in | Drupal Search vendor "Drupal" | Drupal Search vendor "Drupal" for product "Drupal" | - | - |
Safe
|
Trexart Search vendor "Trexart" | Campaignmonitor Search vendor "Trexart" for product "Campaignmonitor" | 6.x-1.x-dev Search vendor "Trexart" for product "Campaignmonitor" and version "6.x-1.x-dev" | - |
Affected
| in | Drupal Search vendor "Drupal" | Drupal Search vendor "Drupal" for product "Drupal" | - | - |
Safe
|
Trexart Search vendor "Trexart" | Campaignmonitor Search vendor "Trexart" for product "Campaignmonitor" | 6.x-2.1 Search vendor "Trexart" for product "Campaignmonitor" and version "6.x-2.1" | - |
Affected
| in | Drupal Search vendor "Drupal" | Drupal Search vendor "Drupal" for product "Drupal" | - | - |
Safe
|
Trexart Search vendor "Trexart" | Campaignmonitor Search vendor "Trexart" for product "Campaignmonitor" | 6.x-2.2 Search vendor "Trexart" for product "Campaignmonitor" and version "6.x-2.2" | - |
Affected
| in | Drupal Search vendor "Drupal" | Drupal Search vendor "Drupal" for product "Drupal" | - | - |
Safe
|
Trexart Search vendor "Trexart" | Campaignmonitor Search vendor "Trexart" for product "Campaignmonitor" | 6.x-2.3 Search vendor "Trexart" for product "Campaignmonitor" and version "6.x-2.3" | - |
Affected
| in | Drupal Search vendor "Drupal" | Drupal Search vendor "Drupal" for product "Drupal" | - | - |
Safe
|
Trexart Search vendor "Trexart" | Campaignmonitor Search vendor "Trexart" for product "Campaignmonitor" | 6.x-2.x Search vendor "Trexart" for product "Campaignmonitor" and version "6.x-2.x" | dev |
Affected
| in | Drupal Search vendor "Drupal" | Drupal Search vendor "Drupal" for product "Drupal" | - | - |
Safe
|