Pattern Insight
Patterninsight · 5 CVEs
CVE-2012-4950
MEDIUM
Cross-site scripting (XSS) vulnerability in the Keyword Search page in the web interface in Pattern Insight 2.3 allows…
Nov 18, 2012
CVE-2012-4938
LOW
Cross-site scripting (XSS) vulnerability in the web interface in Pattern Insight 2.3 allows remote authenticated admini…
Nov 18, 2012
CVE-2012-4937
MEDIUM
Session fixation vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack web sessio…
Nov 18, 2012
CVE-2012-4936
MEDIUM
The web interface in Pattern Insight 2.3 allows remote attackers to conduct clickjacking attacks via a FRAME element.
Nov 18, 2012
CVE-2012-4935
MEDIUM
Cross-site request forgery (CSRF) vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to…
Nov 18, 2012
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2012-4950 | Cross-site scripting (XSS) vulnerability in the Keyword Search page in the web interface in Pattern Insight 2.3 allows remote attackers to inject arbitrary web… | MEDIUM | 1.33% | Nov 18, 2012 |
| CVE-2012-4938 | Cross-site scripting (XSS) vulnerability in the web interface in Pattern Insight 2.3 allows remote authenticated administrators to inject arbitrary web script… | LOW | 1.09% | Nov 18, 2012 |
| CVE-2012-4937 | Session fixation vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack web sessions via a jsession_id cookie. | MEDIUM | 2.42% | Nov 18, 2012 |
| CVE-2012-4936 | The web interface in Pattern Insight 2.3 allows remote attackers to conduct clickjacking attacks via a FRAME element. | MEDIUM | 1.50% | Nov 18, 2012 |
| CVE-2012-4935 | Cross-site request forgery (CSRF) vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack the authentication of arbitrary u… | MEDIUM | 0.74% | Nov 18, 2012 |
Showing 1 to 5 of 5 CVEs