Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-4435

Опубликовано: 11 нояб. 2011
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

The web-server component in the Consolidation and Analysis Engine (CAE) Server in DB2 Query Monitor in IBM DB2 Tools 2.3.0 for z/OS does not prevent directory browsing, which allows remote attackers to obtain sensitive information via HTTP requests.

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

DNE

maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

not-affected

lucid

not-affected

maverick

DNE

natty

DNE

oneiric

DNE

precise

not-affected

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

not-affected

lucid

not-affected

maverick

DNE

natty

DNE

oneiric

DNE

precise

not-affected

upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 46%
0.00234
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
около 14 лет назад

The web-server component in the Consolidation and Analysis Engine (CAE) Server in DB2 Query Monitor in IBM DB2 Tools 2.3.0 for z/OS does not prevent directory browsing, which allows remote attackers to obtain sensitive information via HTTP requests.

github
больше 3 лет назад

The web-server component in the Consolidation and Analysis Engine (CAE) Server in DB2 Query Monitor in IBM DB2 Tools 2.3.0 for z/OS does not prevent directory browsing, which allows remote attackers to obtain sensitive information via HTTP requests.

EPSS

Процентиль: 46%
0.00234
Низкий

5 Medium

CVSS2