Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2012-2173

EPSS 0.22% · P45
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2012-2173

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The ODBC driver in IBM Security AppScan Source 7.x and 8.x before 8.6 sends an SHA-1 hash of the connection password during connections to a solidDB database, which allows remote attackers to obtain sensitive information by sniffing the network.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
IBM Security AppScan Source敏感信息漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
IBM Security AppScan Source 7.x版本、8.6之前的8.x版本中的ODBC驱动程序中存在漏洞,该漏洞源于在连接数据库期间发送SHA-1哈希算法的连接密码。远程攻击者可利用该漏洞通过嗅探网络获取敏感信息。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2012-2173

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2012-2173

登录查看更多情报信息。

Same Patch Batch · n/a · 2012-06-20 · 20 CVEs total

CVE-2012-0716IBM WebSphere Application Server跨站脚本漏洞
CVE-2012-2192IBM AIX ‘socketpair()’ 拒绝服务漏洞
CVE-2012-2180IBM DB2 DRDA模块拒绝服务漏洞
CVE-2012-2175IBM Lotus iNotes Upload Module ActiveX控件缓冲区溢出漏洞
CVE-2012-2174IBM Lotus Notes “notes” URI处理器任意代码执行漏洞
CVE-2012-2170IBM WebSphere Application Server信息泄漏漏洞
CVE-2012-2161IBM SPSS Data Collection跨站脚本漏洞
CVE-2012-2159IBM SPSS Data Collection开放重定向漏洞
CVE-2012-0720IBM WebSphere Application Server跨站脚本漏洞
CVE-2012-0717IBM WebSphere Application Server授权问题漏洞
CVE-2012-2493多个平台下的Cisco AnyConnect Secure Mobility Client任意代码执行漏洞
CVE-2012-3790Adiscon LogAnalyzer ‘highlight’参数跨站脚本漏洞
CVE-2011-5095OpenSSL ‘Diffie-Hellman key-exchange’安全漏洞
CVE-2011-1923PolarSSL安全绕过漏洞
CVE-2012-3063Cisco ACE安全绕过漏洞
CVE-2012-3058Cisco ASA/Catalyst ASASM拒绝服务漏洞
CVE-2012-2496Cisco AnyConnect Secure Mobility Client 代码注入漏洞
CVE-2012-2495Cisco AnyConnect Secure Mobility Client/Secure Desktop安全漏洞
CVE-2012-2494Cisco AnyConnect Secure Mobility Client ‘WebLaunch’功能安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2012-2173

No comments yet


Leave a comment