Lucene search

K
cveMitreCVE-2005-1930
HistoryDec 14, 2005 - 8:07 p.m.

CVE-2005-1930

2005-12-1420:07:00
mitre
web.nvd.nist.gov
24
cve-2005-1930
directory traversal
crystal report
trend micro serverprotect
management console
remote attack
vulnerability
nvd
security
information security

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.009

Percentile

82.4%

Directory traversal vulnerability in the Crystal Report component (rptserver.asp) in Trend Micro ServerProtect Management Console 5.58, as used in Control Manager 2.5 and 3.0 and Damage Cleanup Server 1.1, and possibly earlier versions, allows remote attackers to read arbitrary files via the IMAGE parameter.

Affected configurations

Nvd
Node
trend_microserverprotectMatch5.58emc
VendorProductVersionCPE
trend_microserverprotect5.58cpe:2.3:a:trend_micro:serverprotect:5.58:*:emc:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.009

Percentile

82.4%

Related for CVE-2005-1930