U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2012-3363

Change History

Modified Analysis by NIST 2/14/2024 10:20:09 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*
Changed CPE Configuration
OR
     *cpe:2.3:a:zend:zend_framework:1.0.0:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.0.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.0.0:rc2:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.0.0:rc2a:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.0.0:rc3:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.0.1:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.0.2:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.0.3:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.0.4:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.0:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.0:pl:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.0:pr:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.0:rc2:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.0:rc3:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.1:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.2:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.5.3:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.6.0:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.6.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.6.0:rc2:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.6.0:rc3:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.6.1:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.6.2:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.0:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.0:pl1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.0:pr:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.1:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.2:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.3:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.3:pl1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.4:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.5:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.6:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.7:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.8:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.7.9:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.0:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.0:a1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.0:b1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.1:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.2:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.3:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.4:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.4:pl1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.8.5:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.0:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.0:a1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.0:b1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.1:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.2:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.3:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.3:pl1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.4:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.5:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.6:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.7:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.9.8:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.0:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.0:alpha1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.0:beta1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.1:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.2:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.3:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.4:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.5:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.6:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.7:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.8:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.10.9:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.0:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.0:b1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.1:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.2:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.3:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.4:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.5:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.6:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.7:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.8:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.9:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.10:*:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.11.11:*:*:*:*:*:*:*
OR
     *cpe:2.3:a:zend:zend_framework:*:*:*:*:*:*:*:* versions from (including) 1.0.0 up to (excluding) 1.11.12
     *cpe:2.3:a:zend:zend_framework:1.12.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.12.0:rc2:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.12.0:rc3:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.12.0:rc4:*:*:*:*:*:*
Changed CPE Configuration
OR
     *cpe:2.3:a:zend:zend_framework:1.12.0:rc1:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.12.0:rc2:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.12.0:rc3:*:*:*:*:*:*
     *cpe:2.3:a:zend:zend_framework:1.12.0:rc4:*:*:*:*:*:*
OR
     *cpe:2.3:o:fedoraproject:fedora:17:*:*:*:*:*:*:*
     *cpe:2.3:o:fedoraproject:fedora:18:*:*:*:*:*:*:*
Added CVSS V3.1

								
							
							
						
NIST AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Added CWE

								
							
							
						
NIST CWE-611
Removed CWE
NIST NVD-CWE-noinfo

								
						
Changed Reference Type
http://framework.zend.com/security/advisory/ZF2012-01 No Types Assigned
http://framework.zend.com/security/advisory/ZF2012-01 Vendor Advisory
Changed Reference Type
http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-34284 No Types Assigned
http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-34284 Patch
Changed Reference Type
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101310.html No Types Assigned
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101310.html Mailing List
Changed Reference Type
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101358.html No Types Assigned
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/101358.html Mailing List
Changed Reference Type
http://openwall.com/lists/oss-security/2013/03/25/2 No Types Assigned
http://openwall.com/lists/oss-security/2013/03/25/2 Mailing List
Changed Reference Type
http://www.debian.org/security/2012/dsa-2505 No Types Assigned
http://www.debian.org/security/2012/dsa-2505 Mailing List
Changed Reference Type
http://www.openwall.com/lists/oss-security/2012/06/26/2 No Types Assigned
http://www.openwall.com/lists/oss-security/2012/06/26/2 Mailing List
Changed Reference Type
http://www.openwall.com/lists/oss-security/2012/06/26/4 No Types Assigned
http://www.openwall.com/lists/oss-security/2012/06/26/4 Mailing List
Changed Reference Type
http://www.openwall.com/lists/oss-security/2012/06/27/2 No Types Assigned
http://www.openwall.com/lists/oss-security/2012/06/27/2 Mailing List
Changed Reference Type
http://www.securitytracker.com/id?1027208 No Types Assigned
http://www.securitytracker.com/id?1027208 Broken Link, Third Party Advisory, VDB Entry
Changed Reference Type
https://moodle.org/mod/forum/discuss.php?d=225345 No Types Assigned
https://moodle.org/mod/forum/discuss.php?d=225345 Third Party Advisory
Changed Reference Type
https://www.sec-consult.com/files/20120626-0_zend_framework_xxe_injection.txt No Types Assigned
https://www.sec-consult.com/files/20120626-0_zend_framework_xxe_injection.txt Broken Link