Описание
Directory traversal vulnerability in the NMS server in Alcatel-Lucent OmniVista 4760 R5.1.06.03 and earlier allows remote attackers to read arbitrary files via directory traversal sequences in HTTP GET requests, related to the lang variable.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4760_r5.1.06.03 (включая)
Одно из
cpe:2.3:a:alcatel-lucent:omnivista:*:*:*:*:*:*:*:*
cpe:2.3:a:alcatel-lucent:omnivista:4760_r5.0.07.05:*:*:*:*:*:*:*
EPSS
Процентиль: 53%
0.00296
Низкий
3.3 Low
CVSS2
Дефекты
CWE-22
Связанные уязвимости
github
больше 3 лет назад
Directory traversal vulnerability in the NMS server in Alcatel-Lucent OmniVista 4760 R5.1.06.03 and earlier allows remote attackers to read arbitrary files via directory traversal sequences in HTTP GET requests, related to the lang variable.
EPSS
Процентиль: 53%
0.00296
Низкий
3.3 Low
CVSS2
Дефекты
CWE-22