Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-1799

Опубликовано: 02 апр. 2007
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.3 only checks for the ".." string, which allows remote attackers to overwrite arbitrary files via modified ".." sequences in a torrent filename, as demonstrated by "../" sequences, due to an incomplete fix for CVE-2007-1384.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:joris_guisson:ktorrent:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:joris_guisson:ktorrent:2.1.2:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.01016
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
почти 19 лет назад

Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.3 only checks for the ".." string, which allows remote attackers to overwrite arbitrary files via modified ".." sequences in a torrent filename, as demonstrated by "../" sequences, due to an incomplete fix for CVE-2007-1384.

debian
почти 19 лет назад

Directory traversal vulnerability in torrent.cpp in KTorrent before 2. ...

github
почти 4 года назад

Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.3 only checks for the ".." string, which allows remote attackers to overwrite arbitrary files via modified ".." sequences in a torrent filename, as demonstrated by "../" sequences, due to an incomplete fix for CVE-2007-1384.

EPSS

Процентиль: 77%
0.01016
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other