Lucene search

K
cve[email protected]CVE-2004-2743
HistoryOct 09, 2007 - 10:00 a.m.

CVE-2004-2743

2007-10-0910:00:00
CWE-264
web.nvd.nist.gov
19
mega upload progress bar
upload.cgi
file copy
file overwrite
security vulnerability
cve-2004-2743

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

7.2 High

AI Score

Confidence

Low

0.008 Low

EPSS

Percentile

81.9%

upload.cgi in Mega Upload Progress Bar before 1.45 allows remote attackers to copy or overwrite arbitrary files via unspecified parameters related to names of uploaded files.

Affected configurations

NVD
Node
raditha_dissanayakemega_upload_progress_barMatch1.30
OR
raditha_dissanayakemega_upload_progress_barMatch1.35
OR
raditha_dissanayakemega_upload_progress_barMatch1.43
OR
raditha_dissanayakemega_upload_progress_barMatch1.44

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

7.2 High

AI Score

Confidence

Low

0.008 Low

EPSS

Percentile

81.9%

Related for CVE-2004-2743