Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.704191
Category:Debian Local Security Checks
Title:Debian Security Advisory DSA 4191-1 (redmine - security update)
Summary:Multiple vulnerabilities were discovered in Redmine, a project;management web application. They could lead to remote code execution,;information disclosure or cross-site scripting attacks.
Description:Summary:
Multiple vulnerabilities were discovered in Redmine, a project
management web application. They could lead to remote code execution,
information disclosure or cross-site scripting attacks.

Affected Software/OS:
redmine on Debian Linux

Solution:
For the stable distribution (stretch), these problems have been fixed in
version 3.3.1-4+deb9u1.

We recommend that you upgrade your redmine packages.

In addition, this message serves as an announcement that security
support for redmine in the Debian 8 oldstable release (jessie) is now
discontinued.

Users of redmine in Debian 8 that want security updates are strongly
encouraged to upgrade now to the current Debian 9 stable release
(stretch).

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-15568
Common Vulnerability Exposure (CVE) ID: CVE-2017-15569
Common Vulnerability Exposure (CVE) ID: CVE-2017-15570
Common Vulnerability Exposure (CVE) ID: CVE-2017-15571
Common Vulnerability Exposure (CVE) ID: CVE-2017-15572
Common Vulnerability Exposure (CVE) ID: CVE-2017-15573
Common Vulnerability Exposure (CVE) ID: CVE-2017-15574
Common Vulnerability Exposure (CVE) ID: CVE-2017-15575
Common Vulnerability Exposure (CVE) ID: CVE-2017-15576
Common Vulnerability Exposure (CVE) ID: CVE-2017-15577
Common Vulnerability Exposure (CVE) ID: CVE-2017-16804
Common Vulnerability Exposure (CVE) ID: CVE-2017-18026
CopyrightCopyright (C) 2018 Greenbone Networks GmbH

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2024 E-Soft Inc. All rights reserved.