Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2008-4437

почти 18 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

CVSS2: 7.1
EPSS: Низкий
redhat логотип

CVE-2008-4437

почти 18 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

EPSS: Низкий
nvd логотип

CVE-2008-4437

почти 18 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

CVSS2: 7.1
EPSS: Низкий
debian логотип

CVE-2008-4437

почти 18 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2 ...

CVSS2: 7.1
EPSS: Низкий
github логотип

GHSA-ph4j-q265-3h3m

около 4 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2008-4437

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

CVSS2: 7.1
6%
Низкий
почти 18 лет назад
redhat логотип
CVE-2008-4437

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

6%
Низкий
почти 18 лет назад
nvd логотип
CVE-2008-4437

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

CVSS2: 7.1
6%
Низкий
почти 18 лет назад
debian логотип
CVE-2008-4437

Directory traversal vulnerability in importxml.pl in Bugzilla before 2 ...

CVSS2: 7.1
6%
Низкий
почти 18 лет назад
github логотип
GHSA-ph4j-q265-3h3m

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

6%
Низкий
около 4 лет назад

Уязвимостей на страницу