CVE-2012-0263
Last modified
CVE-2012-0263 is a vulnerability of currently unknown severity. monitor/index.php in op5 Monitor and op5 Appliance before 5.5.1 allows remote authenticated users to obtain sensitive information such as database and user credentials via error messages that are triggered by (1) a malformed hoststatustypes parameter to status/service/all or (2) a crafted request to config.. EPSS estimates a 1.94% chance of exploitation in the next 30 days.
Description
monitor/index.php in op5 Monitor and op5 Appliance before 5.5.1 allows remote authenticated users to obtain sensitive information such as database and user credentials via error messages that are triggered by (1) a malformed hoststatustypes parameter to status/service/all or (2) a crafted request to config.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Op5 | Monitor | <= 5.5.0 |
| Op5 | Monitor | 5.3.5 |
| Op5 | Monitor | 5.4.0 |
| Op5 | Monitor | 5.4.2 |
References
- http://secunia.com/advisories/47344Vendor Advisory
- http://secunia.com/advisories/47344Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-0263?
How severe is CVE-2012-0263?
How do I fix CVE-2012-0263?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2012
- CVE-2012-0257Heap-based buffer overflow in the WWCabFile ActiveX componen…
- CVE-2012-0258Heap-based buffer overflow in the WWCabFile ActiveX componen…
- CVE-2012-0259The GetEXIFProperty function in magick/property.c in ImageMa…6.5
- CVE-2012-0260The JPEGWarningHandler function in coders/jpeg.c in ImageMag…6.5
- CVE-2012-0261license.php in system-portal before 1.6.2 in op5 Monitor and…
- CVE-2012-0262op5config/welcome in system-op5config before 2.0.3 in op5 Mo…
- CVE-2012-0264op5 Monitor and op5 Appliance before 5.5.0 do not properly m…
- CVE-2012-0265Stack-based buffer overflow in Apple QuickTime before 7.7.2 …
- CVE-2012-0266Multiple stack-based buffer overflows in the NTR ActiveX con…
- CVE-2012-0267The StopModule method in the NTR ActiveX control before 2.0.…
- CVE-2012-0268Integer overflow in the CYImage::LoadJPG method in YImage.dl…
- CVE-2012-0269Buffer overflow in JustSystems Ichitaro 2011 Sou, Ichitaro 2…
Are you affected by CVE-2012-0263?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
