Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7vm5-9rp5-9rv3

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to load and execute arbitrary local DLL code via a .. (dot dot) in a /CIMListener/ URI in an M-POST request.

Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to load and execute arbitrary local DLL code via a .. (dot dot) in a /CIMListener/ URI in an M-POST request.

EPSS

Процентиль: 98%
0.63557
Средний

Дефекты

CWE-22

Связанные уязвимости

nvd
почти 17 лет назад

Directory traversal vulnerability in the CIM server in IBM Director before 5.20.3 Service Update 2 on Windows allows remote attackers to load and execute arbitrary local DLL code via a .. (dot dot) in a /CIMListener/ URI in an M-POST request.

EPSS

Процентиль: 98%
0.63557
Средний

Дефекты

CWE-22