Описание
Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1.3.4.ds1-1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [1.1.3-0ubuntu1~ubuntu13.11]] |
| lucid | DNE | |
| precise | DNE | |
| quantal | DNE | |
| raring | ignored | end of life |
| saucy | ignored | end of life |
| trusty | not-affected | 1.1.3-0ubuntu1~ubuntu13.11 |
| trusty/esm | DNE | trusty was not-affected [1.1.3-0ubuntu1~ubuntu13.11] |
| upstream | pending | 1.2.2 |
Показывать по
5 Medium
CVSS2
Связанные уязвимости
Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.
Absolute path traversal vulnerability in cantata before 1.2.2 allows l ...
Absolute path traversal vulnerability in cantata before 1.2.2 allows local users to read arbitrary files via a full pathname in a request to the internal httpd server. NOTE: this vulnerability can be leveraged by remote attackers using CVE-2013-7301.
5 Medium
CVSS2