Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mcp4-8wrr-m2qf

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Directory traversal vulnerability in (1) Deerfield D2Gfx 1.0.2 or (2) BadBlue Enterprise Edition 1.5.x and BadBlue Personal Edition 1.5.6 allows remote attackers to read arbitrary files via a ../ (dot dot slash) in the script used to read Microsoft Office documents.

Directory traversal vulnerability in (1) Deerfield D2Gfx 1.0.2 or (2) BadBlue Enterprise Edition 1.5.x and BadBlue Personal Edition 1.5.6 allows remote attackers to read arbitrary files via a ../ (dot dot slash) in the script used to read Microsoft Office documents.

EPSS

Процентиль: 46%
0.00229
Низкий

Связанные уязвимости

nvd
больше 22 лет назад

Directory traversal vulnerability in (1) Deerfield D2Gfx 1.0.2 or (2) BadBlue Enterprise Edition 1.5.x and BadBlue Personal Edition 1.5.6 allows remote attackers to read arbitrary files via a ../ (dot dot slash) in the script used to read Microsoft Office documents.

EPSS

Процентиль: 46%
0.00229
Низкий