Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4655

Опубликовано: 04 сент. 2007
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

Multiple directory traversal vulnerabilities in CGI RESCUE Shopping Basket Professional 7.51 and earlier allow remote attackers to list arbitrary directories, and possibly read arbitrary files, via directory traversal sequences in unspecified parameters to (1) list.cgi or (2) list2.cgi.

Комментарий

Additional information can be found at: http://www.securityfocus.com/bid/25500/info

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cgi-rescue:shopping_basket_professional:*:*:*:*:*:*:*:*
Версия до 7.51 (включая)

EPSS

Процентиль: 45%
0.00223
Низкий

5 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

github
почти 4 года назад

Multiple directory traversal vulnerabilities in CGI RESCUE Shopping Basket Professional 7.51 and earlier allow remote attackers to list arbitrary directories, and possibly read arbitrary files, via directory traversal sequences in unspecified parameters to (1) list.cgi or (2) list2.cgi.

EPSS

Процентиль: 45%
0.00223
Низкий

5 Medium

CVSS2

Дефекты

CWE-22