patterninsight CVE Vulnerabilities & CVE List (5)

Products (CPE): — CVEs: 5

patterninsight vulnerability overview

Aggregates CVE and security vulnerability intelligence across all patterninsight-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and vendor risk csrf and related problems; some flaws may lead to vendor impact session compromise, affecting vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2012-4950 Cross-site scripting (XSS) vulnerability in the Keyword Search page in the web interface in Pattern Insight 2.3 allows remote attackers to inject arbitrary web script or HTML via crafted characters that are not properly handled during construction of error messages. [email protected] 4.3 1.33% 2012-11-18 2026-04-29
CVE-2012-4938 Cross-site scripting (XSS) vulnerability in the web interface in Pattern Insight 2.3 allows remote authenticated administrators to inject arbitrary web script or HTML via the banner message. [email protected] 3.5 1.09% 2012-11-18 2026-04-29
CVE-2012-4937 Session fixation vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack web sessions via a jsession_id cookie. [email protected] 6.8 2.42% 2012-11-18 2026-04-29
CVE-2012-4936 The web interface in Pattern Insight 2.3 allows remote attackers to conduct clickjacking attacks via a FRAME element. [email protected] 6.8 1.50% 2012-11-18 2026-04-29
CVE-2012-4935 Cross-site request forgery (CSRF) vulnerability in the web interface in Pattern Insight 2.3 allows remote attackers to hijack the authentication of arbitrary users. [email protected] 6.8 0.74% 2012-11-18 2026-04-29
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence