Логотип exploitDog
bind:"CVE-2014-4650"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2014-4650"

Количество 14

Количество 14

ubuntu логотип

CVE-2014-4650

почти 6 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2014-4650

больше 11 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2014-4650

почти 6 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2014-4650

почти 6 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly h ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-33c8-ggqv-8g5p

больше 3 лет назад

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2015-00666

больше 11 лет назад

Уязвимость программного обеспечения Python, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 9.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1344-1

больше 10 лет назад

Security update for python

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1330

больше 10 лет назад

ELSA-2015-1330: python security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:2120-1

больше 9 лет назад

Security update for python3

EPSS: Низкий
oracle-oval логотип

ELSA-2015-2101

около 10 лет назад

ELSA-2015-2101: python security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1064

около 10 лет назад

ELSA-2015-1064: python27 security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0086-1

около 6 лет назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0114-1

около 6 лет назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0234-1

около 6 лет назад

Security update for python

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
6%
Низкий
почти 6 лет назад
redhat логотип
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS2: 5
6%
Низкий
больше 11 лет назад
nvd логотип
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
6%
Низкий
почти 6 лет назад
debian логотип
CVE-2014-4650

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly h ...

CVSS3: 9.8
6%
Низкий
почти 6 лет назад
github логотип
GHSA-33c8-ggqv-8g5p

The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.

CVSS3: 9.8
6%
Низкий
больше 3 лет назад
fstec логотип
BDU:2015-00666

Уязвимость программного обеспечения Python, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

CVSS2: 9.3
6%
Низкий
больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:1344-1

Security update for python

больше 10 лет назад
oracle-oval логотип
ELSA-2015-1330

ELSA-2015-1330: python security, bug fix, and enhancement update (MODERATE)

больше 10 лет назад
suse-cvrf логотип
openSUSE-SU-2016:2120-1

Security update for python3

больше 9 лет назад
oracle-oval логотип
ELSA-2015-2101

ELSA-2015-2101: python security, bug fix, and enhancement update (MODERATE)

около 10 лет назад
oracle-oval логотип
ELSA-2015-1064

ELSA-2015-1064: python27 security, bug fix, and enhancement update (MODERATE)

около 10 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0086-1

Security update for python3

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0114-1

Security update for python3

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0234-1

Security update for python

около 6 лет назад

Уязвимостей на страницу