Описание
Horde Application Framework 3.0.9 allows remote attackers to read arbitrary files via a null character in the url parameter in services/go.php, which bypasses a sanity check.
Релиз | Статус | Примечание |
---|---|---|
dapper | not-affected | |
devel | released | 3.1.4-1 |
edgy | not-affected | |
feisty | not-affected | |
upstream | needs-triage |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 96%
0.23329
Средний
5 Medium
CVSS2
Связанные уязвимости
nvd
больше 19 лет назад
Horde Application Framework 3.0.9 allows remote attackers to read arbitrary files via a null character in the url parameter in services/go.php, which bypasses a sanity check.
debian
больше 19 лет назад
Horde Application Framework 3.0.9 allows remote attackers to read arbi ...
github
больше 3 лет назад
Horde Application Framework 3.0.9 allows remote attackers to read arbitrary files via a null character in the url parameter in services/go.php, which bypasses a sanity check.
EPSS
Процентиль: 96%
0.23329
Средний
5 Medium
CVSS2