CVE-2012-0325

CVSS V2 Medium 4.3 CVSS V3 None
Description
Cross-site scripting (XSS) vulnerability in Jenkins before 1.454, Jenkins LTS before 1.424.5, and Jenkins Enterprise 1.400.x before 1.400.0.13 and 1.424.x before 1.424.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-0324.
Overview
  • CVE ID
  • CVE-2012-0325
  • Assigner
  • vultures@jpcert.or.jp
  • Vulnerability Status
  • Modified
  • Published Version
  • 2012-03-09T11:55:01
  • Last Modified Date
  • 2018-10-30T16:27:19
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:cloudbees:jenkins:*:*:*:*:*:*:*:* 1 OR 1.453
cpe:2.3:a:jenkins:jenkins:1.301:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.302:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.303:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.304:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.305:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.306:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.307:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.308:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.309:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.310:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.311:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.312:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.313:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.314:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.315:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.316:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.317:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.318:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.319:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.320:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.321:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.322:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.323:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.324:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.325:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.326:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.327:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.328:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.329:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.330:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.331:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.332:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.333:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.334:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.335:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.336:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.337:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.338:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.339:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.340:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.341:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.342:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.343:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.344:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.345:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.346:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.347:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.348:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.349:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.350:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.351:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.352:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.353:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.354:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.355:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.356:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.357:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.358:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.359:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.360:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.361:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.362:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.363:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.364:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.365:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.366:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.367:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.368:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.369:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.370:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.371:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.372:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.373:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.374:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.375:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.376:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.377:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.378:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.379:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.380:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.382:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.383:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.384:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.386:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.387:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.388:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.389:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.390:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.391:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.392:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.393:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.394:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.395:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.396:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.397:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.398:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.399:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.400:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.401:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.402:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.403:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.404:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.405:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.406:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.407:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.408:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.409:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.409.1:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.409.2:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.410:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.411:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.412:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.413:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.414:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.415:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.416:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.417:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.418:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.419:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.420:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.421:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.422:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.423:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.424:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.425:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.426:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.427:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.428:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.429:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.430:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.431:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.432:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.433:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.434:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.435:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.436:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:jenkins:jenkins:1.437:*:*:*:*:*:*:* 1 OR
cpe:2.3:a:cloudbees:jenkins:1.400:*:enterprise:*:*:*:*:* 1 OR
cpe:2.3:a:cloudbees:jenkins:1.400.0.12:*:enterprise:*:*:*:*:* 1 OR
cpe:2.3:a:cloudbees:jenkins:1.424:*:enterprise:*:*:*:*:* 1 OR
cpe:2.3:a:cloudbees:jenkins:1.424.5:*:enterprise:*:*:*:*:* 1 OR
cpe:2.3:a:cloudbees:jenkins:1.400:*:lts:*:*:*:*:* 1 OR
cpe:2.3:a:cloudbees:jenkins:1.400.0.12:*:lts:*:*:*:*:* 1 OR
CVSS Version 2
  • Version
  • 2.0
  • Vector String
  • AV:N/AC:M/Au:N/C:N/I:P/A:N
  • Access Vector
  • NETWORK
  • Access Compatibility
  • MEDIUM
  • Authentication
  • NONE
  • Confidentiality Impact
  • NONE
  • Integrity Impact
  • PARTIAL
  • Availability Impact
  • NONE
  • Base Score
  • 4.3
  • Severity
  • MEDIUM
  • Exploitability Score
  • 8.6
  • Impact Score
  • 2.9
History
Created Old Value New Value Data Type Notes
2022-05-10 17:57:40 Added to TrackCVE