Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-0620

Опубликовано: 25 фев. 2010
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

Directory traversal vulnerability in the SSL Service in EMC HomeBase Server 6.2.x before 6.2.3 and 6.3.x before 6.3.2 allows remote attackers to overwrite arbitrary files with any content, and consequently execute arbitrary code, via a .. (dot dot) in an unspecified parameter.

Комментарий

Per: http://seclists.org/bugtraq/2010/Feb/222

Affected products:

EMC HomeBase Server version 6.2.x

EMC HomeBase Server version 6.3.x

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:emc:homebase_server:6.2:*:*:*:*:*:*:*
cpe:2.3:a:emc:homebase_server:6.3:*:*:*:*:*:*:*

EPSS

Процентиль: 89%
0.04493
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-22

Связанные уязвимости

github
около 3 лет назад

Directory traversal vulnerability in the SSL Service in EMC HomeBase Server 6.2.x before 6.2.3 and 6.3.x before 6.3.2 allows remote attackers to overwrite arbitrary files with any content, and consequently execute arbitrary code, via a .. (dot dot) in an unspecified parameter.

EPSS

Процентиль: 89%
0.04493
Низкий

9.3 Critical

CVSS2

Дефекты

CWE-22