Lucene search

K
cve[email protected]CVE-2005-4373
HistoryDec 20, 2005 - 2:03 a.m.

CVE-2005-4373

2005-12-2002:03:00
web.nvd.nist.gov
19
awf
adaptive website framework
cve-2005-4373
path disclosure
security vulnerability
nvd

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

7 High

AI Score

Confidence

Low

0.006 Low

EPSS

Percentile

78.4%

Adaptive Website Framework (AWF) 2.10 and earlier allows remote attackers to obtain the full path of the application via an invalid mode parameter to community.html, which leaks the path in an error message.

Affected configurations

NVD
Node
liquid_bytes_technologiesadaptive_website_frameworkMatch1.11
OR
liquid_bytes_technologiesadaptive_website_frameworkMatch2.00
OR
liquid_bytes_technologiesadaptive_website_frameworkMatch2.01
OR
liquid_bytes_technologiesadaptive_website_frameworkMatch2.10

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

7 High

AI Score

Confidence

Low

0.006 Low

EPSS

Percentile

78.4%

Related for CVE-2005-4373