Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-9024

Опубликовано: 21 мая 2017
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Средний

Описание

Secure Bytes Cisco Configuration Manager, as bundled in Secure Bytes Secure Cisco Auditor (SCA) 3.0, has a Directory Traversal issue in its TFTP Server, allowing attackers to read arbitrary files via ../ sequences in a pathname.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:secure-bytes:secure_cisco_auditor:3.0:*:*:*:*:*:*:*

EPSS

Процентиль: 93%
0.10121
Средний

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

Secure Bytes Cisco Configuration Manager, as bundled in Secure Bytes Secure Cisco Auditor (SCA) 3.0, has a Directory Traversal issue in its TFTP Server, allowing attackers to read arbitrary files via ../ sequences in a pathname.

EPSS

Процентиль: 93%
0.10121
Средний

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-22