Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-19859

Опубликовано: 05 дек. 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 4
EPSS Средний

Описание

OpenRefine before 3.2 beta allows directory traversal via a relative pathname in a ZIP archive.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:openrefine:openrefine:1.0:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0:a1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0:a2:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0:a3:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0:a4:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0:b1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:1.1:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.0:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.1:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.1:rc1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.5:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.5:rc1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.5:rc3:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.6:alpha1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.6:alpha2:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.6:beta1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.6:rc1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.6:rc2:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.7:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.7:rc1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.7:rc2:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:2.8:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:3.0:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:3.0:beta:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:3.0:rc1:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:3.1:*:*:*:*:*:*:*
cpe:2.3:a:openrefine:openrefine:3.1:beta:*:*:*:*:*:*

EPSS

Процентиль: 93%
0.10611
Средний

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.5
debian
около 7 лет назад

OpenRefine before 3.2 beta allows directory traversal via a relative p ...

CVSS3: 6.5
github
больше 3 лет назад

OpenRefine Directory Traversal

EPSS

Процентиль: 93%
0.10611
Средний

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-22