Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r269-qx8f-58hh

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as "/.//..//////././", which is collapsed into "/.././" after ".." and "//" sequences are removed.

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as "/.//..//////././", which is collapsed into "/.././" after ".." and "//" sequences are removed.

EPSS

Процентиль: 79%
0.01258
Низкий

Связанные уязвимости

ubuntu
почти 20 лет назад

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as "/.//..//////././", which is collapsed into "/.././" after ".." and "//" sequences are removed.

nvd
почти 20 лет назад

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as "/.//..//////././", which is collapsed into "/.././" after ".." and "//" sequences are removed.

debian
почти 20 лет назад

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remot ...

EPSS

Процентиль: 79%
0.01258
Низкий