CVE-2011-4183

EUVD-2011-4126
A vulnerability in open build service allows remote attackers to upload arbitrary RPM files. Affected releases are SUSE open build service prior to 2.1.16.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.5 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
microfocusCNA
6.5 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 57%
Affected Products (NVD)
VendorProductVersion
opensuseopen_build_service
𝑥
< 2.1.16
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
open-build-service
bookworm
2.9.4-9
fixed
sid
2.9.4-10
fixed
trixie
2.9.4-10
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
open-build-service
artful
ignored
bionic
not-affected
cosmic
not-affected
trusty
dne
xenial
dne