Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-16814

Опубликовано: 26 фев. 2018
Источник: nvd
CVSS3: 5.5
CVSS2: 3.3
EPSS Низкий

Описание

A Directory Traversal issue was discovered in the Foxit MobilePDF app before 6.1 for iOS. This occurs by abusing the URL + escape character during a Wi-Fi transfer, which could be exploited by attackers to bypass intended restrictions on local application files.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:foxitsoftware:mobilepdf:*:*:*:*:*:iphone_os:*:*
Версия до 6.0.0 (включая)

EPSS

Процентиль: 17%
0.00053
Низкий

5.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.5
github
больше 3 лет назад

A Directory Traversal issue was discovered in the Foxit MobilePDF app before 6.1 for iOS. This occurs by abusing the URL + escape character during a Wi-Fi transfer, which could be exploited by attackers to bypass intended restrictions on local application files.

EPSS

Процентиль: 17%
0.00053
Низкий

5.5 Medium

CVSS3

3.3 Low

CVSS2

Дефекты

CWE-22