Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-3195

Опубликовано: 18 сент. 2008
Источник: ubuntu
Приоритет: low
CVSS2: 6.8

Описание

Directory traversal vulnerability in bin/configure in TWiki before 4.2.3, when a certain step in the installation guide is skipped, allows remote attackers to read arbitrary files via a query string containing a .. (dot dot) in the image variable, and execute arbitrary files via unspecified vectors.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

feisty

ignored

end of life, was needed
gutsy

ignored

end of life, was needed
hardy

ignored

end of life
intrepid

ignored

end of life, was needed
jaunty

not-affected

1:4.1.2-5ubuntu1
karmic

not-affected

lucid

DNE

maverick

DNE

Показывать по

Ссылки на источники

6.8 Medium

CVSS2

Связанные уязвимости

nvd
больше 17 лет назад

Directory traversal vulnerability in bin/configure in TWiki before 4.2.3, when a certain step in the installation guide is skipped, allows remote attackers to read arbitrary files via a query string containing a .. (dot dot) in the image variable, and execute arbitrary files via unspecified vectors.

debian
больше 17 лет назад

Directory traversal vulnerability in bin/configure in TWiki before 4.2 ...

github
почти 4 года назад

Directory traversal vulnerability in bin/configure in TWiki before 4.2.3, when a certain step in the installation guide is skipped, allows remote attackers to read arbitrary files via a query string containing a .. (dot dot) in the image variable, and execute arbitrary files via unspecified vectors.

6.8 Medium

CVSS2