Vulnerability Name:

CVE-2012-2751 (CCN-76519)

Assigned:2012-06-08
Published:2012-06-08
Updated:2023-02-13
Summary:
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N)
3.2 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): None
4.3 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N)
3.2 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): None
Vulnerability Consequences:Bypass Security
References:Source: secalert@redhat.com
Type: Third Party Advisory
secalert@redhat.com

Source: MITRE
Type: CNA
CVE-2012-2751

Source: secalert@redhat.com
Type: Mailing List, Third Party Advisory
secalert@redhat.com

Source: secalert@redhat.com
Type: Mailing List, Third Party Advisory
secalert@redhat.com

Source: secalert@redhat.com
Type: Mailing List, Third Party Advisory
secalert@redhat.com

Source: CCN
Type: sourceforge: mod-security
08 Jun 2012 - 2.6.6

Source: secalert@redhat.com
Type: Broken Link
secalert@redhat.com

Source: secalert@redhat.com
Type: Broken Link
secalert@redhat.com

Source: secalert@redhat.com
Type: Broken Link
secalert@redhat.com

Source: CCN
Type: SA49576
ModSecurity Multipart Quote Parsing Security Bypass Vulnerability

Source: secalert@redhat.com
Type: Third Party Advisory
secalert@redhat.com

Source: DEBIAN
Type: DSA-2506
libapache-mod-security -- ModSecurity bypass

Source: secalert@redhat.com
Type: Third Party Advisory
secalert@redhat.com

Source: secalert@redhat.com
Type: Third Party Advisory
secalert@redhat.com

Source: secalert@redhat.com
Type: Mailing List, Third Party Advisory
secalert@redhat.com

Source: secalert@redhat.com
Type: Mailing List, Third Party Advisory
secalert@redhat.com

Source: CCN
Type: Oracle Web site
Oracle Critical Patch Update Advisory - April 2013

Source: secalert@redhat.com
Type: Third Party Advisory
secalert@redhat.com

Source: CCN
Type: BID-54156
ModSecurity Quote Parsing Security Bypass Vulnerability

Source: secalert@redhat.com
Type: Third Party Advisory, VDB Entry
secalert@redhat.com

Source: XF
Type: UNKNOWN
modsecurity-security-bypass(76519)

Vulnerable Configuration:Configuration CCN 1:
  • cpe:/a:modsecurity:modsecurity:1.9.4:*:*:*:*:*:*:*
  • AND
  • cpe:/a:oracle:http_server:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20122751
    V
    CVE-2012-2751
    2022-09-02
    oval:org.opensuse.security:def:42274
    P
    Security update for libslirp (Important)
    2022-04-29
    oval:org.opensuse.security:def:976
    P
    Security update for apache2 (Important)
    2022-01-17
    oval:org.opensuse.security:def:111962
    P
    apache2-mod_security2-2.9.0-5.6 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:31335
    P
    Security update for xorg-x11-server (Important)
    2021-12-20
    oval:org.opensuse.security:def:31334
    P
    Security update for log4j (Important)
    2021-12-17
    oval:org.opensuse.security:def:1498
    P
    Recommended update for php7 (Moderate)
    2021-12-06
    oval:org.opensuse.security:def:33050
    P
    Security update for the Linux Kernel (Important)
    2021-11-30
    oval:org.opensuse.security:def:64617
    P
    Security update for postgresql14 (Important)
    2021-11-22
    oval:org.opensuse.security:def:32219
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-11-19
    oval:org.opensuse.security:def:31701
    P
    Security update for pcre (Moderate)
    2021-11-10
    oval:org.opensuse.security:def:94196
    P
    (Moderate)
    2021-11-09
    oval:org.opensuse.security:def:26149
    P
    Security update for iproute2 (Moderate)
    2021-10-18
    oval:org.opensuse.security:def:1551
    P
    Security update for the Linux Kernel (Important)
    2021-10-12
    oval:org.opensuse.security:def:105526
    P
    apache2-mod_security2-2.9.0-5.6 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:26135
    P
    Security update for hivex (Moderate)
    2021-09-23
    oval:org.opensuse.security:def:33011
    P
    Security update for hivex (Moderate)
    2021-09-23
    oval:org.opensuse.security:def:71291
    P
    libopenssl-devel-1.1.0i-3.3.1 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:90031
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:2107
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:71404
    P
    sysvinit-tools-2.88+-1.26 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:63196
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:96996
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:103686
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2021-09-21
    oval:org.opensuse.security:def:68051
    P
    Security update for the Linux Kernel (Live Patch 18 for SLE 15 SP1) (Important)
    2021-09-16
    oval:org.opensuse.security:def:1029
    P
    Security update for libaom (Important)
    2021-09-09
    oval:org.opensuse.security:def:32163
    P
    Security update for MozillaFirefox (Important)
    2021-08-17
    oval:org.opensuse.security:def:47550
    P
    apache-commons-beanutils-1.9.2-1.149 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47686
    P
    libXv1-1.0.10-7.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47512
    P
    sysvinit-tools-2.88+-99.15 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48103
    P
    libdcerpc-binding0-32bit-4.10.5+git.129.35f7bb6e177-1.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47958
    P
    autofs-5.1.3-1.17 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47565
    P
    bash-4.3-83.15.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47498
    P
    sane-backends-1.0.24-3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48011
    P
    fuse-2.9.3-6.3.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47826
    P
    mariadb-10.2.18-1.7 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48198
    P
    libsqlite3-0-3.8.10.2-9.12.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47551
    P
    apache-commons-daemon-1.0.15-6.10 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47497
    P
    ruby-2.1-1.4 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47879
    P
    rsync-3.1.0-13.13.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:47633
    P
    gstreamer-plugins-bad-1.8.3-17.2 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48251
    P
    opie-2.4-724.56 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:48050
    P
    java-11-openjdk-11.0.4.0-1.26 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:100909
    P
    libfreebl3-3.53.1-3.51.1 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:26096
    P
    Security update for php72 (Moderate)
    2021-07-29
    oval:org.opensuse.security:def:32154
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-07-27
    oval:org.opensuse.security:def:66865
    P
    Security update for containerd (Moderate)
    2021-07-20
    oval:org.opensuse.security:def:31644
    P
    Security update for xterm (Important)
    2021-06-18
    oval:org.opensuse.security:def:31639
    P
    Security update for freeradius-server (Moderate)
    2021-06-11
    oval:org.opensuse.security:def:48654
    P
    xorg-x11-libs-7.6-45.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48549
    P
    libsnmp30-5.7.3-4.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:42494
    P
    apache2-mod_security2-2.7.1-0.2.18.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48412
    P
    eog-3.20.4-7.7 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48707
    P
    telepathy-idle-0.2.0-1.62 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48623
    P
    squashfs-4.3-6.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48465
    P
    libXext6-1.3.2-3.60 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48676
    P
    gnome-shell-calendar-3.10.4-22.13 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48558
    P
    libtcnative-1-0-1.1.32-9.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48725
    P
    gstreamer-0_10-plugins-bad-0.10.23-17.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36087
    P
    apache2-mod_security2-2.7.1-0.2.18.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48611
    P
    qemu-2.6.1-27.15 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48496
    P
    libgnomesu-2.0.0-353.6.2 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:48778
    P
    icu-52.1-7.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:32110
    P
    Security update for gstreamer-plugins-bad (Important)
    2021-06-07
    oval:org.opensuse.security:def:64704
    P
    Security update for python-py (Moderate)
    2021-06-04
    oval:org.opensuse.security:def:1609
    P
    Security update for dhcp (Important)
    2021-06-02
    oval:org.opensuse.security:def:26062
    P
    Security update for djvulibre (Important)
    2021-05-31
    oval:org.opensuse.security:def:70221
    P
    Security update for djvulibre (Important)
    2021-05-19
    oval:org.opensuse.security:def:26047
    P
    Security update for xen (Important)
    2021-05-12
    oval:org.opensuse.security:def:66773
    P
    Security update for the Linux Kernel (Important)
    2021-05-12
    oval:org.opensuse.security:def:32088
    P
    Security update for bind (Important)
    2021-05-04
    oval:org.opensuse.security:def:26213
    P
    Security update for evolution-data-server (Moderate)
    2021-03-19
    oval:org.opensuse.security:def:32268
    P
    Security update for openldap2 (Important)
    2021-03-03
    oval:org.opensuse.security:def:31346
    P
    Security update for java-1_8_0-openjdk (Moderate)
    2021-02-19
    oval:org.opensuse.security:def:26193
    P
    Security update for bind (Important)
    2021-02-18
    oval:org.opensuse.security:def:32831
    P
    Security update for curl (Moderate)
    2020-12-14
    oval:org.opensuse.security:def:31565
    P
    Security update for openssl (Important)
    2020-12-11
    oval:org.opensuse.security:def:32007
    P
    Security update for the Linux Kernel (Live Patch 30 for SLE 12 SP3) (Important)
    2020-12-07
    oval:org.opensuse.security:def:63254
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2054
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:107575
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:117133
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:63143
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:35867
    P
    apache2-mod_security2-2.7.1-0.2.12.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:2165
    P
    apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:32000
    P
    Security update for python-setuptools (Important)
    2020-12-02
    oval:org.opensuse.security:def:25429
    P
    Security update for libzypp (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31788
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:50050
    P
    apache2-mod_security2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25978
    P
    Security update for tcpdump, libpcap (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32307
    P
    Security update for python (Important)
    2020-12-01
    oval:org.opensuse.security:def:73556
    P
    apache2-mod_security2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25417
    P
    Security update for postgresql, postgresql96, postgresql10 and postgresql12 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25702
    P
    Security update for libvpx (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32049
    P
    Security update for kvm (Important)
    2020-12-01
    oval:org.opensuse.security:def:49938
    P
    apache2-mod_nss on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26266
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:27050
    P
    virt-utils on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25994
    P
    Security update for ImageMagick (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31554
    P
    Security update for sqlite3 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26368
    P
    Security update for irssi (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:67951
    P
    pulseaudio on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31771
    P
    Security update for MozillaFirefox, MozillaFirefox-branding-SLED, firefox-gcc5, mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:32792
    P
    sysstat on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31420
    P
    Security update for php53 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25648
    P
    Security update for python36 (Important)
    2020-12-01
    oval:org.opensuse.security:def:25418
    P
    Security update for raptor (Important)
    2020-12-01
    oval:org.opensuse.security:def:26866
    P
    apache2-mod_security2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25636
    P
    Security update for libproxy (Important)
    2020-12-01
    oval:org.opensuse.security:def:25921
    P
    Recommended update for mariadb (Important)
    2020-12-01
    oval:org.opensuse.security:def:49996
    P
    davfs2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25621
    P
    Security update for samba (Important)
    2020-12-01
    oval:org.opensuse.security:def:32373
    P
    Security update for tcpdump (Important)
    2020-12-01
    oval:org.opensuse.security:def:25843
    P
    Security update for python (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49939
    P
    apache2-mod_security2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31553
    P
    Security update for sqlite3 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26354
    P
    Security update for chromium (Important)
    2020-12-01
    oval:org.opensuse.security:def:70116
    P
    libsoup-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:73438
    P
    libndp-devel on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25637
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:31920
    P
    Security update for ghostscript-library (Important)
    2020-12-01
    oval:org.opensuse.security:def:27085
    P
    apache2-mod_security2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25840
    P
    Security update for libvirt (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25493
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:31944
    P
    Security update for gnutls (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:32329
    P
    Security update for samba (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49992
    P
    apache2-mod_security2 on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25759
    P
    Security update for icu (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26315
    P
    Security update for MozillaThunderbird (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:49885
    P
    gv on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26831
    P
    tar on GA media (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:26412
    P
    Security update for tor (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31863
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31552
    P
    Security update for socat (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:25712
    P
    Security update for python36 (Moderate)
    2020-12-01
    oval:org.mitre.oval:def:20023
    P
    DSA-2506-1 libapache-mod-security - modsecurity bypass
    2014-06-23
    oval:org.mitre.oval:def:14855
    P
    ModSecurity bypass vulnerability (CVE-2012-2751)
    2012-12-17
    oval:com.ubuntu.precise:def:20122751000
    V
    CVE-2012-2751 on Ubuntu 12.04 LTS (precise) - medium.
    2012-07-22
    oval:com.ubuntu.trusty:def:20122751000
    V
    CVE-2012-2751 on Ubuntu 14.04 LTS (trusty) - medium.
    2012-07-22
    oval:com.ubuntu.xenial:def:20122751000
    V
    CVE-2012-2751 on Ubuntu 16.04 LTS (xenial) - medium.
    2012-07-22
    oval:com.ubuntu.xenial:def:201227510000000
    V
    CVE-2012-2751 on Ubuntu 16.04 LTS (xenial) - medium.
    2012-07-22
    BACK
    modsecurity modsecurity 1.9.4
    oracle http server -