// For flags

CVE-2012-6090

 

Severity Score

7.5
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Multiple stack-based buffer overflows in the expand function in os/pl-glob.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted filename.

Múltiples vulnerabilidades de ejecución de secuencias de comandos en sitios cruzados (XSS) en la función expand en os/pl-glob.c en SWI-Prolog anteriores a v6.2.5 y v6.3.x anteriores a v6.3.7, permite a atacantes remotos provocar una denegación de servicio (caída de aplicacion) o posiblemente ejecutar código a través de un nombre de fichero manipulado.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2012-12-06 CVE Reserved
  • 2013-01-04 CVE Published
  • 2024-09-16 CVE Updated
  • 2024-09-17 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
<= 6.2.4
Search vendor "Swi-prolog" for product "Swi-prolog" and version " <= 6.2.4"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.50
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.50"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.51
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.51"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.52
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.52"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.53
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.53"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.54
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.54"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.55
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.55"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.56
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.56"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.57
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.57"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.58
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.58"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.59
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.59"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.61
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.61"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.62
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.62"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.63
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.63"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.6.64
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.6.64"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.8.0
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.8.0"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.8.1
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.8.1"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.8.2
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.8.2"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.8.3
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.8.3"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.10.0
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.10.0"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.10.1
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.10.1"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.10.2
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.10.2"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.10.3
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.10.3"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.10.4
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.10.4"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
5.10.5
Search vendor "Swi-prolog" for product "Swi-prolog" and version "5.10.5"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.0.0
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.0.0"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.0.1
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.0.1"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.0.2
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.0.2"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.2.0
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.2.0"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.2.1
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.2.1"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.2.2
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.2.2"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.2.3
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.2.3"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.3.0
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.3.0"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.3.1
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.3.1"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.3.2
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.3.2"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.3.3
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.3.3"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.3.4
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.3.4"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.3.5
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.3.5"
-
Affected
Swi-prolog
Search vendor "Swi-prolog"
Swi-prolog
Search vendor "Swi-prolog" for product "Swi-prolog"
6.3.6
Search vendor "Swi-prolog" for product "Swi-prolog" and version "6.3.6"
-
Affected