Описание
The E-book viewer in calibre before 2.75 allows remote attackers to read arbitrary files via a crafted epub file with JavaScript.
Ссылки
- Mailing ListPatch
- Mailing ListPatch
- Third Party Advisory
- ExploitIssue Tracking
- Patch
- Mailing ListPatch
- Mailing ListPatch
- Third Party Advisory
- ExploitIssue Tracking
- Patch
Уязвимые конфигурации
Конфигурация 1Версия до 2.74.0 (включая)
cpe:2.3:a:calibre-ebook:calibre:*:*:*:*:*:*:*:*
EPSS
Процентиль: 60%
0.0039
Низкий
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
CVSS3: 5.5
ubuntu
почти 9 лет назад
The E-book viewer in calibre before 2.75 allows remote attackers to read arbitrary files via a crafted epub file with JavaScript.
CVSS3: 5.5
debian
почти 9 лет назад
The E-book viewer in calibre before 2.75 allows remote attackers to re ...
CVSS3: 5.5
github
больше 3 лет назад
The E-book viewer in calibre before 2.75 allows remote attackers to read arbitrary files via a crafted epub file with JavaScript.
EPSS
Процентиль: 60%
0.0039
Низкий
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-264