Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4583

Опубликовано: 29 авг. 2007
Источник: nvd
CVSS2: 5
EPSS Средний

Описание

Multiple absolute path traversal vulnerabilities in the nvUtility.Utility.1 ActiveX control in nvUtility.dll 1.0.14.0 in ACTi Network Video Recorder (NVR) SP2 2.0 allow remote attackers to (1) create or overwrite arbitrary files via a full pathname in the first argument to the SaveXMLFile method or (2) delete arbitrary files via a full pathname in the argument to the DeleteXMLFile method.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:acti:network_video_recorder:sp2_2.0:*:*:*:*:*:*:*

EPSS

Процентиль: 94%
0.12696
Средний

5 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

github
почти 4 года назад

Multiple absolute path traversal vulnerabilities in the nvUtility.Utility.1 ActiveX control in nvUtility.dll 1.0.14.0 in ACTi Network Video Recorder (NVR) SP2 2.0 allow remote attackers to (1) create or overwrite arbitrary files via a full pathname in the first argument to the SaveXMLFile method or (2) delete arbitrary files via a full pathname in the argument to the DeleteXMLFile method.

EPSS

Процентиль: 94%
0.12696
Средний

5 Medium

CVSS2

Дефекты

CWE-22