Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-2332

Опубликовано: 31 авг. 2015
Источник: nvd
CVSS2: 5.5
EPSS Низкий

Описание

Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allows remote authenticated users to delete arbitrary files via a request to an unspecified link, related to "Insecure Direct Object References." NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2330.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:check_mk_project:check_mk:*:*:*:*:*:*:*:*
Версия до 1.2.2 (включая)
cpe:2.3:a:check_mk_project:check_mk:*:*:*:*:*:*:*:*
Версия до 1.2.3 (включая)

EPSS

Процентиль: 66%
0.00525
Низкий

5.5 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 10 лет назад

Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allows remote authenticated users to delete arbitrary files via a request to an unspecified link, related to "Insecure Direct Object References." NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2330.

debian
больше 10 лет назад

Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allows remote authen ...

github
больше 3 лет назад

Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allows remote authenticated users to delete arbitrary files via a request to an unspecified link, related to "Insecure Direct Object References." NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2330.

EPSS

Процентиль: 66%
0.00525
Низкий

5.5 Medium

CVSS2

Дефекты

CWE-20