Lucene search

K
cveMitreCVE-2002-1684
HistoryJun 21, 2005 - 4:00 a.m.

CVE-2002-1684

2005-06-2104:00:00
mitre
web.nvd.nist.gov
26
cve-2002-1684
directory traversal
deerfield d2gfx
badblue enterprise edition
file read vulnerability

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

7

Confidence

Low

EPSS

0.003

Percentile

71.9%

Directory traversal vulnerability in (1) Deerfield D2Gfx 1.0.2 or (2) BadBlue Enterprise Edition 1.5.x and BadBlue Personal Edition 1.5.6 allows remote attackers to read arbitrary files via a …/ (dot dot slash) in the script used to read Microsoft Office documents.

Affected configurations

Nvd
Node
deerfieldd2gfxMatch1.0.2
OR
working_resources_inc.badblueMatchenterprise_1.5
OR
working_resources_inc.badblueMatchpersonal_1.5.6_beta
VendorProductVersionCPE
deerfieldd2gfx1.0.2cpe:2.3:a:deerfield:d2gfx:1.0.2:*:*:*:*:*:*:*
working_resources_inc.badblueenterprise_1.5cpe:2.3:a:working_resources_inc.:badblue:enterprise_1.5:*:*:*:*:*:*:*
working_resources_inc.badbluepersonal_1.5.6_betacpe:2.3:a:working_resources_inc.:badblue:personal_1.5.6_beta:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

7

Confidence

Low

EPSS

0.003

Percentile

71.9%

Related for CVE-2002-1684