Vulnerability Name:

CVE-2012-0320 (CCN-73414)

Assigned:2012-02-22
Published:2012-02-22
Updated:2018-01-18
Summary:Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 allows remote attackers to take control of sessions via unspecified vectors related to the (1) commenting feature and (2) community script.
CVSS v3 Severity:7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
5.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-noinfo
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2012-0320

Source: JVN
Type: UNKNOWN
JVN#20083397

Source: JVNDB
Type: UNKNOWN
JVNDB-2012-000018

Source: CCN
Type: SA48127
Movable Type Multiple Vulnerabilities

Source: DEBIAN
Type: UNKNOWN
DSA-2423

Source: DEBIAN
Type: DSA-2423
movabletype-opensource -- several vulnerabilities

Source: CONFIRM
Type: Patch, Vendor Advisory
http://www.movabletype.org/2012/02/movable_type_513_507_and_438_security_updates.html

Source: CCN
Type: Movable Type Web Site
Movable Type 5.13, 5.07, and 4.38 Release Notes

Source: CONFIRM
Type: Patch, Vendor Advisory
http://www.movabletype.org/documentation/appendices/release-notes/513.html

Source: CCN
Type: OSVDB ID: 79474
Movable Type Commenting / Community Scripts Session Hijacking

Source: BID
Type: UNKNOWN
52138

Source: CCN
Type: BID-52138
Movable Type Multiple Remote Vulnerabilities

Source: SECTRACK
Type: UNKNOWN
1026738

Source: XF
Type: UNKNOWN
movable-type-file-command-execution(73414)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:sixapart:movable_type:4.28:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.29:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.36:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:*:*:open_source:*:*:*:*:* (Version <= 4.37)
  • OR cpe:/a:sixapart:movable_type:4.291:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.292:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.361:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.01:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.1:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.02:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.04:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.05:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.06:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.11:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.12:*:open_source:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.051:*:open_source:*:*:*:*:*

  • Configuration 2:
  • cpe:/a:sixapart:movable_type:4.28:*:enterprise:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.29:*:enterprise:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.291:*:enterprise:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:*:*:enterprise:*:*:*:*:* (Version <= 4.292)

  • Configuration 3:
  • cpe:/a:sixapart:movable_type:5.1:*:advanced:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.02:*:advanced:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.04:*:advanced:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.05:*:advanced:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.06:*:advanced:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.11:*:advanced:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.12:*:advanced:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.051:*:advanced:*:*:*:*:*

  • Configuration 4:
  • cpe:/a:sixapart:movable_type:4.0:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:beta:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:beta2:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:beta3:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:beta4:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:beta5:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:beta6:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:beta7:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:rc1:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:rc2:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.0:rc3:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.1:beta:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.1:beta2:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.1:rc1:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.2:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.2:rc2:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.2:rc4:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.2:rc5:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.12:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.15:beta1:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.15:beta3:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.15:beta4:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.22:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.23:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.24:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.25:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.26:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.27:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.28:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.29:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.35:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.36:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.37:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.261:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.291:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.292:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:4.361:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:beta1:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:beta2:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:beta3:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:beta4:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:rc1:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:rc2:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:rc3:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.01:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.1:beta:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.1:rc1:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.02:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.03:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.04:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.05:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.06:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.07:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.11:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.12:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.031:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.051:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:six_apart:movable_type:4:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.0:*:*:*:*:*:*:*
  • OR cpe:/a:sixapart:movable_type:5.01:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.mitre.oval:def:14661
    P
    DSA-2423-1 movabletype-opensource -- several
    2014-06-23
    oval:com.ubuntu.precise:def:20120320000
    V
    CVE-2012-0320 on Ubuntu 12.04 LTS (precise) - medium.
    2012-03-02
    oval:com.ubuntu.trusty:def:20120320000
    V
    CVE-2012-0320 on Ubuntu 14.04 LTS (trusty) - medium.
    2012-03-02
    BACK
    sixapart movable type 4.28
    sixapart movable type 4.29
    sixapart movable type 4.36
    sixapart movable type *
    sixapart movable type 4.291
    sixapart movable type 4.292
    sixapart movable type 4.361
    sixapart movable type 5.0
    sixapart movable type 5.01
    sixapart movable type 5.1
    sixapart movable type 5.02
    sixapart movable type 5.04
    sixapart movable type 5.05
    sixapart movable type 5.06
    sixapart movable type 5.11
    sixapart movable type 5.12
    sixapart movable type 5.051
    sixapart movable type 4.28
    sixapart movable type 4.29
    sixapart movable type 4.291
    sixapart movable type *
    sixapart movable type 5.1
    sixapart movable type 5.02
    sixapart movable type 5.04
    sixapart movable type 5.05
    sixapart movable type 5.06
    sixapart movable type 5.11
    sixapart movable type 5.12
    sixapart movable type 5.051
    sixapart movable type 4.0
    sixapart movable type 4.0 beta
    sixapart movable type 4.0 beta2
    sixapart movable type 4.0 beta3
    sixapart movable type 4.0 beta4
    sixapart movable type 4.0 beta5
    sixapart movable type 4.0 beta6
    sixapart movable type 4.0 beta7
    sixapart movable type 4.0 rc1
    sixapart movable type 4.0 rc2
    sixapart movable type 4.0 rc3
    sixapart movable type 4.1 beta
    sixapart movable type 4.1 beta2
    sixapart movable type 4.1 rc1
    sixapart movable type 4.2
    sixapart movable type 4.2 rc2
    sixapart movable type 4.2 rc4
    sixapart movable type 4.2 rc5
    sixapart movable type 4.12
    sixapart movable type 4.15 beta1
    sixapart movable type 4.15 beta3
    sixapart movable type 4.15 beta4
    sixapart movable type 4.22
    sixapart movable type 4.23
    sixapart movable type 4.24
    sixapart movable type 4.25
    sixapart movable type 4.26
    sixapart movable type 4.27
    sixapart movable type 4.28
    sixapart movable type 4.29
    sixapart movable type 4.35
    sixapart movable type 4.36
    sixapart movable type 4.37
    sixapart movable type 4.261
    sixapart movable type 4.291
    sixapart movable type 4.292
    sixapart movable type 4.361
    sixapart movable type 5.0
    sixapart movable type 5.0 beta1
    sixapart movable type 5.0 beta2
    sixapart movable type 5.0 beta3
    sixapart movable type 5.0 beta4
    sixapart movable type 5.0 rc1
    sixapart movable type 5.0 rc2
    sixapart movable type 5.0 rc3
    sixapart movable type 5.01
    sixapart movable type 5.1 beta
    sixapart movable type 5.1 rc1
    sixapart movable type 5.02
    sixapart movable type 5.03
    sixapart movable type 5.04
    sixapart movable type 5.05
    sixapart movable type 5.06
    sixapart movable type 5.07
    sixapart movable type 5.11
    sixapart movable type 5.12
    sixapart movable type 5.031
    sixapart movable type 5.051
    six_apart movable type 4
    sixapart movable type 5.0
    sixapart movable type 5.01