Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown

CVE-2011-2649

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to execute arbitrary commands via shell metacharacters in an unspecified FileUtils function call.
0
Attacker Value
Unknown

CVE-2011-2645

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename for a custom RPM.
0
Attacker Value
Unknown

CVE-2011-2651

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Unspecified vulnerability in the file browser in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename.
0
Attacker Value
Unknown

CVE-2011-2650

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via a crafted pattern name that is included in an RPM info display.
0
Attacker Value
Unknown

CVE-2011-2652

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via a crafted archive file list that is used in an overlay file.
0
Attacker Value
Unknown

CVE-2011-2648

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a filter in a modified file.
0
Attacker Value
Unknown

CVE-2011-2644

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to an RPM info display.
0
Attacker Value
Unknown

CVE-2011-2226

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a pattern listing.
0
Attacker Value
Unknown

CVE-2011-2225

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to have an unknown impact via a crafted directory pathname that is inserted into config.sh.
0
Attacker Value
Unknown

CVE-2011-2646

Disclosure Date: August 23, 2011 (last updated October 04, 2023)
Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename in the list of testdrive modified files.
0