Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jrx5-35w9-xj26

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demonstrated using directory traversal sequences.

The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demonstrated using directory traversal sequences.

EPSS

Процентиль: 91%
0.06429
Низкий

Связанные уязвимости

ubuntu
больше 12 лет назад

The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demonstrated using directory traversal sequences.

redhat
больше 12 лет назад

The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demonstrated using directory traversal sequences.

nvd
больше 12 лет назад

The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demonstrated using directory traversal sequences.

debian
больше 12 лет назад

The http-domino-enum-passwords.nse script in NMap before 6.40, when do ...

EPSS

Процентиль: 91%
0.06429
Низкий