Логотип exploitDog
bind:CVE-2008-4437
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2008-4437

Количество 5

Количество 5

ubuntu логотип

CVE-2008-4437

почти 17 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

CVSS2: 7.1
EPSS: Средний
redhat логотип

CVE-2008-4437

почти 17 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

EPSS: Средний
nvd логотип

CVE-2008-4437

почти 17 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

CVSS2: 7.1
EPSS: Средний
debian логотип

CVE-2008-4437

почти 17 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2 ...

CVSS2: 7.1
EPSS: Средний
github логотип

GHSA-ph4j-q265-3h3m

больше 3 лет назад

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2008-4437

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

CVSS2: 7.1
11%
Средний
почти 17 лет назад
redhat логотип
CVE-2008-4437

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

11%
Средний
почти 17 лет назад
nvd логотип
CVE-2008-4437

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

CVSS2: 7.1
11%
Средний
почти 17 лет назад
debian логотип
CVE-2008-4437

Directory traversal vulnerability in importxml.pl in Bugzilla before 2 ...

CVSS2: 7.1
11%
Средний
почти 17 лет назад
github логотип
GHSA-ph4j-q265-3h3m

Directory traversal vulnerability in importxml.pl in Bugzilla before 2.22.5, and 3.x before 3.0.5, when --attach_path is enabled, allows remote attackers to read arbitrary files via an XML file with a .. (dot dot) in the data element.

11%
Средний
больше 3 лет назад

Уязвимостей на страницу