CVE-2015-10011

A vulnerability classified as problematic has been found in OpenDNS OpenResolve. This affects an unknown part of the file resolverapi/endpoints.py. The manipulation leads to improper output neutralization for logs. The identifier of the patch is 9eba6ba5abd89d0e36a008921eb307fcef8c5311. It is recommended to apply a patch to fix this issue. The identifier VDB-217197 was assigned to this vulnerability.
References
Link Resource
https://github.com/opendns/OpenResolve/commit/9eba6ba5abd89d0e36a008921eb307fcef8c5311 Patch Third Party Advisory
https://vuldb.com/?ctiid.217197 Permissions Required Third Party Advisory
https://vuldb.com/?id.217197 Permissions Required Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:openresolve:*:*:*:*:*:*:*:*

History

11 Apr 2024, 00:52

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad ha sido encontrada en OpenDNS OpenResolve y clasificada como problemática. Esto afecta a una parte desconocida del archivo resolverapi/endpoints.py. La manipulación conduce a una neutralización inadecuada de la salida de troncos. El identificador del parche es 9eba6ba5abd89d0e36a008921eb307fcef8c5311. Se recomienda aplicar un parche para solucionar este problema. A esta vulnerabilidad se le asignó el identificador VDB-217197.

20 Oct 2023, 08:15

Type Values Removed Values Added
Summary A vulnerability classified as problematic has been found in OpenDNS OpenResolve. This affects an unknown part of the file resolverapi/endpoints.py. The manipulation leads to improper output neutralization for logs. The name of the patch is 9eba6ba5abd89d0e36a008921eb307fcef8c5311. It is recommended to apply a patch to fix this issue. The identifier VDB-217197 was assigned to this vulnerability. A vulnerability classified as problematic has been found in OpenDNS OpenResolve. This affects an unknown part of the file resolverapi/endpoints.py. The manipulation leads to improper output neutralization for logs. The identifier of the patch is 9eba6ba5abd89d0e36a008921eb307fcef8c5311. It is recommended to apply a patch to fix this issue. The identifier VDB-217197 was assigned to this vulnerability.

09 Jan 2023, 19:22

Type Values Removed Values Added
CPE cpe:2.3:a:cisco:openresolve:*:*:*:*:*:*:*:*
First Time Cisco openresolve
Cisco
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
References (MISC) https://github.com/opendns/OpenResolve/commit/9eba6ba5abd89d0e36a008921eb307fcef8c5311 - (MISC) https://github.com/opendns/OpenResolve/commit/9eba6ba5abd89d0e36a008921eb307fcef8c5311 - Patch, Third Party Advisory
References (MISC) https://vuldb.com/?id.217197 - (MISC) https://vuldb.com/?id.217197 - Permissions Required, Third Party Advisory
References (MISC) https://vuldb.com/?ctiid.217197 - (MISC) https://vuldb.com/?ctiid.217197 - Permissions Required, Third Party Advisory
CWE CWE-117 CWE-116

02 Jan 2023, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-02 22:15

Updated : 2024-04-11 00:52


NVD link : CVE-2015-10011

Mitre link : CVE-2015-10011

CVE.ORG link : CVE-2015-10011


JSON object : View

Products Affected

cisco

  • openresolve
CWE
CWE-116

Improper Encoding or Escaping of Output

CWE-117

Improper Output Neutralization for Logs