CVE Vulnerabilities

CVE-2012-3475

Published: Aug 12, 2012 | Modified: Aug 13, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The installer in the Ushahidi Platform before 2.5 omits certain calls to the exit function, which allows remote attackers to obtain administrative privileges via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Ushahidi_platform Ushahidi 2.1 2.1
Ushahidi_platform Ushahidi 2.0 2.0
Ushahidi_platform Ushahidi 1.0 1.0
Ushahidi_platform Ushahidi 2.2.1 2.2.1
Ushahidi_platform Ushahidi * 2.4.1
Ushahidi_platform Ushahidi 2.3.1 2.3.1
Ushahidi_platform Ushahidi 2.2 2.2
Ushahidi_platform Ushahidi 2.4 2.4
Ushahidi_platform Ushahidi 2.3.2 2.3.2
Ushahidi_platform Ushahidi 1.2 1.2

References