CVE-2012-0414: XSS
Published Dec 2, 2013
·Updated
Cross-site scripting (XSS) vulnerability in the Spacewalk service in SUSE Manager 1.2 for SUSE Linux Enterprise (SLE) 11 SP1 allows remote attackers to inject arbitrary web script or HTML via an image name.
Affected Software
2 affected components
Novell Suse Manager=1.2
Novell SUSE Linux=11-sp1
Event History
Dec 2, 2013
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-0414?
CVE-2012-0414 is classified as a moderate severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2012-0414?
To fix CVE-2012-0414, users should apply the latest security patches provided for SUSE Manager 1.2.
3
Who is affected by CVE-2012-0414?
CVE-2012-0414 affects users of SUSE Manager 1.2 for SUSE Linux Enterprise 11 SP1.
4
What type of vulnerability is CVE-2012-0414?
CVE-2012-0414 is a cross-site scripting (XSS) vulnerability that allows remote code injection via image names.
5
Can CVE-2012-0414 be exploited remotely?
Yes, CVE-2012-0414 can be exploited remotely by attackers to inject arbitrary web scripts or HTML.