Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-3625

Опубликовано: 19 окт. 2009
Источник: redhat
CVSS2: 7.5
EPSS Низкий

Описание

Directory traversal vulnerability in www/index.php in Sahana 0.6.2.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mod parameter.

Дополнительная информация

Статус:

Important
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=530255Sahana: Arbitrary files access due improper processing of URLs with null character in the string

EPSS

Процентиль: 94%
0.08192
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
почти 17 лет назад

Directory traversal vulnerability in www/index.php in Sahana 0.6.2.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mod parameter.

debian
почти 17 лет назад

Directory traversal vulnerability in www/index.php in Sahana 0.6.2.2 a ...

github
больше 4 лет назад

Directory traversal vulnerability in www/index.php in Sahana 0.6.2.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mod parameter.

EPSS

Процентиль: 94%
0.08192
Низкий

7.5 High

CVSS2