Логотип exploitDog
bind:CVE-2017-11512
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-11512

Количество 2

Количество 2

nvd логотип

CVE-2017-11512

около 8 лет назад

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the name parameter for the download-snapshot URL. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

CVSS3: 7.5
EPSS: Высокий
github логотип

GHSA-c33r-cv7j-5pm7

больше 3 лет назад

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the name parameter for the download-snapshot URL. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

CVSS3: 7.5
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-11512

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the name parameter for the download-snapshot URL. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

CVSS3: 7.5
85%
Высокий
около 8 лет назад
github логотип
GHSA-c33r-cv7j-5pm7

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the name parameter for the download-snapshot URL. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

CVSS3: 7.5
85%
Высокий
больше 3 лет назад

Уязвимостей на страницу