Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-3195

Опубликовано: 18 сент. 2008
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.8

Описание

Directory traversal vulnerability in bin/configure in TWiki before 4.2.3, when a certain step in the installation guide is skipped, allows remote attackers to read arbitrary files via a query string containing a .. (dot dot) in the image variable, and execute arbitrary files via unspecified vectors.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

feisty

ignored

end of life, was needed
gutsy

ignored

end of life, was needed
hardy

ignored

end of life
intrepid

ignored

end of life, was needed
jaunty

not-affected

1:4.1.2-5ubuntu1
karmic

not-affected

lucid

DNE

maverick

DNE

Показывать по

Ссылки на источники

EPSS

Процентиль: 94%
0.0828
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

nvd
почти 18 лет назад

Directory traversal vulnerability in bin/configure in TWiki before 4.2.3, when a certain step in the installation guide is skipped, allows remote attackers to read arbitrary files via a query string containing a .. (dot dot) in the image variable, and execute arbitrary files via unspecified vectors.

debian
почти 18 лет назад

Directory traversal vulnerability in bin/configure in TWiki before 4.2 ...

github
больше 4 лет назад

Directory traversal vulnerability in bin/configure in TWiki before 4.2.3, when a certain step in the installation guide is skipped, allows remote attackers to read arbitrary files via a query string containing a .. (dot dot) in the image variable, and execute arbitrary files via unspecified vectors.

EPSS

Процентиль: 94%
0.0828
Низкий

6.8 Medium

CVSS2