Vulnerability Details CVE-2012-0956
ubiquity-slideshow-ubuntu before 58.2, during installation, allows remote man-in-the-middle attackers to execute arbitrary web script or HTML and read arbitrary files via a crafted attribute in the <a> tag of a Twitter feed.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.0%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2012-0956
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:49
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:52
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:53
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:54
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:55
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:56
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:57
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:58
-
cpe:2.3:a:ubiquity_slideshow_team:ubiquity-slideshow-ubuntu:58.1