Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2900

Опубликовано: 21 авг. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

The FilePath::ReferencesParent function in files/file_path.cc in Google Chrome before 29.0.1547.57 on Windows does not properly handle pathname components composed entirely of . (dot) and whitespace characters, which allows remote attackers to conduct directory traversal attacks via a crafted directory name.

РелизСтатусПримечание
devel

not-affected

lucid

ignored

end of life
precise

not-affected

quantal

not-affected

raring

not-affected

upstream

released

29.0.1547.57

Показывать по

EPSS

Процентиль: 76%
0.0098
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
больше 12 лет назад

The FilePath::ReferencesParent function in files/file_path.cc in Google Chrome before 29.0.1547.57 on Windows does not properly handle pathname components composed entirely of . (dot) and whitespace characters, which allows remote attackers to conduct directory traversal attacks via a crafted directory name.

debian
больше 12 лет назад

The FilePath::ReferencesParent function in files/file_path.cc in Googl ...

github
больше 3 лет назад

The FilePath::ReferencesParent function in files/file_path.cc in Google Chrome before 29.0.1547.57 on Windows does not properly handle pathname components composed entirely of . (dot) and whitespace characters, which allows remote attackers to conduct directory traversal attacks via a crafted directory name.

EPSS

Процентиль: 76%
0.0098
Низкий

7.5 High

CVSS2