CVE-2018-8032

Description

Apache Axis 1.x up to and including 1.4 is vulnerable to a cross-site scripting (XSS) attack in the default servlet/services.

Risk Information

Base Score
6.1
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS Score
Exploitation Probability
2.343

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.1.7Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 11.2.4Windows
Multiple Vulnerabilities are affected in IBM Cognos Analytics 12.0.1Windows
Multiple Vulnerabilities are affected in IBM Security Verify Directory Integrator 7.2.0Windows
Vulnerabilities CVE-2012-5784,CVE-2014-3596,CVE-2019-0227,CVE-2018-8032,CVE-2023-40743 are affected in Apache - axis 1.4Windows
Vulnerabilities CVE-2012-5784,CVE-2014-3596,CVE-2019-0227,CVE-2018-8032,CVE-2023-40743 are affected in Axis - axis 1.4Windows
SUSE-SU-2018:3118-1(SUSE Linux Enterprise Server 12-SP3 ) axis-1.4-290.3.1.noarch.rpmLinux
SUSE-SU-2018:3119-1(SUSE Linux Enterprise Server 11-SP4 ) axis-1.4-236.236.44.9.1.noarch.rpmLinux
Vulnerabilities CVE-2012-5784,CVE-2014-3596,CVE-2019-0227,CVE-2018-8032,CVE-2023-40743 are affected in Apache - axis for Linux 1.4Linux
Vulnerabilities CVE-2012-5784,CVE-2014-3596,CVE-2019-0227,CVE-2018-8032,CVE-2023-40743 are affected in Axis - axis for Linux 1.4Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234