Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-1000161

Опубликовано: 18 апр. 2018
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 3.5
CVSS3: 5.7

Описание

nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-fetch that can result in file overwrite as the user is running it. This attack appears to be exploitable via a victim that runs NSE script http-fetch against a malicious web site. This vulnerability appears to have been fixed in 7.7.

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

not-affected

7.91+dfsg1+really7.80+dfsg1-2build1
disco

not-affected

7.70+dfsg1-6
eoan

ignored

end of life
esm-apps/focal

not-affected

7.80+dfsg1-2build1
esm-apps/jammy

not-affected

7.91+dfsg1+really7.80+dfsg1-2build1
esm-apps/noble

not-affected

7.91+dfsg1+really7.80+dfsg1-2build1
esm-infra-legacy/trusty

not-affected

code not present

Показывать по

Ссылки на источники

EPSS

Процентиль: 40%
0.00183
Низкий

3.5 Low

CVSS2

5.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
redhat
почти 8 лет назад

nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-fetch that can result in file overwrite as the user is running it. This attack appears to be exploitable via a victim that runs NSE script http-fetch against a malicious web site. This vulnerability appears to have been fixed in 7.7.

CVSS3: 5.7
nvd
почти 8 лет назад

nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-fetch that can result in file overwrite as the user is running it. This attack appears to be exploitable via a victim that runs NSE script http-fetch against a malicious web site. This vulnerability appears to have been fixed in 7.7.

CVSS3: 5.7
debian
почти 8 лет назад

nmap version 6.49BETA6 through 7.60, up to and including SVN revision ...

CVSS3: 5.7
github
больше 3 лет назад

nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-fetch that can result in file overwrite as the user is running it. This attack appears to be exploitable via a victim that runs NSE script http-fetch against a malicious web site. This vulnerability appears to have been fixed in 7.7.

EPSS

Процентиль: 40%
0.00183
Низкий

3.5 Low

CVSS2

5.7 Medium

CVSS3