This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:mahara:mahara:1.2.4
Detail
VendorMaharaFirst view 2010-07-06
ProductMaharaLast view 2012-07-12
Version1.2.4TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:mahara:mahara

Activity : Yearly

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
52012-07-12CVE-2012-2351NetworkLowNone Requ...
62011-11-14CVE-2011-4118NetworkMediumRequires ...
6.82011-11-14CVE-2011-2773NetworkMediumNone Requ...
52011-11-14CVE-2011-2772NetworkLowNone Requ...
4.32011-11-14CVE-2011-2771NetworkMediumNone Requ...
Hide | Show 13 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
4.32011-05-13CVE-2011-1406NetworkMediumNone Requ...
3.52011-05-13CVE-2011-1405NetworkMediumRequires ...
42011-05-13CVE-2011-1404NetworkLowRequires ...
6.82011-05-13CVE-2011-1403NetworkMediumNone Requ...
6.52011-05-13CVE-2011-1402NetworkLowRequires ...
5.82011-03-28CVE-2011-0440NetworkMediumNone Requ...
4.32011-03-28CVE-2011-0439NetworkMediumNone Requ...
4.32010-11-09CVE-2010-3871NetworkMediumNone Requ...
4.32010-07-06CVE-2010-2479NetworkMediumNone Requ...
7.52010-07-06CVE-2010-1670NetworkLowNone Requ...
7.52010-07-06CVE-2010-1669NetworkLowNone Requ...
6.82010-07-06CVE-2010-1668NetworkMediumNone Requ...
4.32010-07-06CVE-2010-1667NetworkMediumNone Requ...

CWE : Common Weakness Enumeration

%idName
33% (6)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
22% (4)CWE-352Cross-Site Request Forgery (CSRF)
16% (3)CWE-264Permissions, Privileges, and Access Controls
11% (2)CWE-16Configuration
5% (1)CWE-287Improper Authentication
Hide | Show 2 More...
%idName
5% (1)CWE-89Improper Sanitization of Special Elements used in an SQL Command ('...
5% (1)CWE-20Improper Input Validation

Open Source Vulnerability Database (OSVDB)

idDescription
77207Mahara MNet XMLRPC Jump Remote Privilege Escalation
76919Mahara admin/users/addtoinstitution.php User Institution Manipulation CSRF
76918Mahara Overly Large Image Handling Remote DoS
76917Mahara External Feed Block Unspecified XSS
73458Mahara wwwroot https URL Parsing Credential Disclosure
Hide | Show 12 More...
idDescription
73457Mahara HTML Email Message XSS
73456Mahara Multiple Script AJAX Call Parsing Information Disclosure
73455Mahara Admin User Addition CSRF
73454Mahara Multiple Script Access Restriction Bypass
72155Mahara Pieform Select Box XSS
72154Mahara Blog Post Deletion CSRF
69111Mahara blocktype/groupviews/theme/raw/groupviews.tpl Unspecified Parameter XSS
66062Mahara Single Sign-on Authentication Plugin Null Password Authentication Bypass
66061Mahara Unspecified SQL Injection
66060Mahara Multiple Unspecified CSRF
66059Mahara Multiple Unspecified XSS
64113HTML Purifier Unspecified XSS