Описание
IBM Host firmware for LC-class Systems could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request that would allow them to delete arbitrary files on the system. IBM X-Force ID: 200558.
Ссылки
- VDB EntryVendor Advisory
- Vendor Advisory
- VDB EntryVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одновременно
cpe:2.3:o:ibm:8335-gca_firmware:op820:*:*:*:*:*:*:*
cpe:2.3:h:ibm:8335-gca:-:*:*:*:*:*:*:*
Конфигурация 2
Одновременно
cpe:2.3:o:ibm:8335-gta_firmware:op820:*:*:*:*:*:*:*
cpe:2.3:h:ibm:8335-gta:-:*:*:*:*:*:*:*
Конфигурация 3
Одновременно
cpe:2.3:o:ibm:8335-gtb_firmware:op820:*:*:*:*:*:*:*
cpe:2.3:h:ibm:8335-gtb:-:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00886
Низкий
4.9 Medium
CVSS3
6.5 Medium
CVSS3
8.5 High
CVSS2
Дефекты
CWE-22
Связанные уязвимости
github
больше 3 лет назад
IBM Host firmware for LC-class Systems could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request that would allow them to delete arbitrary files on the system. IBM X-Force ID: 200558.
EPSS
Процентиль: 75%
0.00886
Низкий
4.9 Medium
CVSS3
6.5 Medium
CVSS3
8.5 High
CVSS2
Дефекты
CWE-22