CVE-2012-2648

Cross-site scripting (XSS) vulnerability in the GoodReader app 3.16 and earlier for iOS on the iPad, and 3.15.1 and earlier for iOS on the iPhone and iPod touch, allows remote attackers to inject arbitrary web script or HTML via vectors involving use of this app in conjunction with a web browser.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:goodiware:goodreader:*:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:1.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.4:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.5:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.5.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.6:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.7:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.7.4:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.8:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.8.4:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.1.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.1.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.2.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.3.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.3.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.4.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.4.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.5.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.5.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.6.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.6.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.7.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.7.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.8.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.9.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.11.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.11.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.12.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.13.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.13.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.14.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.14.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.15.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.15.1:-:*:*:*:iphone_os:*:*
cpe:2.3:h:apple:ipad:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:a:goodiware:goodreader:*:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:1.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.4:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.5:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.5.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.6:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.7:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.8.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:2.8.5:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.0.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.2.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.2.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.3.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.3.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.4.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.4.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.5.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.5.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.6.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.6.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.7.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.7.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.8.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.9.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.2:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.10.3:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.11.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.11.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.12.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.13.0:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.13.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.14.1:-:*:*:*:iphone_os:*:*
cpe:2.3:a:goodiware:goodreader:3.15.0:-:*:*:*:iphone_os:*:*
OR cpe:2.3:h:apple:ipod_touch:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

09 Aug 2022, 13:49

Type Values Removed Values Added
CPE cpe:2.3:h:apple:iphone:*:*:*:*:*:*:*:* cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
First Time Apple iphone Os

Information

Published : 2012-08-07 19:55

Updated : 2023-12-10 11:16


NVD link : CVE-2012-2648

Mitre link : CVE-2012-2648

CVE.ORG link : CVE-2012-2648


JSON object : View

Products Affected

apple

  • ipad
  • iphone_os
  • ipod_touch

goodiware

  • goodreader
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')