4.3
CVSSv2

CVE-2012-6658

Published: 17/09/2014 Updated: 18/09/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in SpiceWorks 5.3.75941 allow remote malicious users to inject arbitrary web script or HTML via the (1) syslocation, (2) syscontact, or (3) sysName configuration in snmpd.conf. NOTE: this entry was SPLIT from CVE-2012-2956 per ADT2 due to different vulnerability types.

Vulnerable Product Search on Vulmon Subscribe to Product

spiceworks spiceworks 5.3.75941

Exploits

Product: SpiceWorks Version: 5375941 Vendor Site: wwwspiceworkscom/community/ Software Download Link: wwwspiceworkscom/download/?utm_source=comm-secondary-link&utm_medium=website&utm_campaign=homepage Installer Filename: Spiceworksexe MD5: 023bd361c0f9402dc07adbc5a72fe31d Contact: wwwspiceworkscom/contact/ Ti ...