Lucene search

K
cveMitreCVE-2008-4361
HistorySep 30, 2008 - 11:24 p.m.

CVE-2008-4361

2008-09-3023:24:53
CWE-22
mitre
web.nvd.nist.gov
34
cve-2008-4361
powerportal 2.0.13
directory traversal
vulnerability
remote attackers
arbitrary files
nvd

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.016

Percentile

87.8%

Directory traversal vulnerability in PowerPortal 2.0.13 allows remote attackers to list and possibly read arbitrary files via a … (dot dot) in the path parameter to the default URI.

Affected configurations

Nvd
Node
powerportalpowerportalMatch2.0.13
VendorProductVersionCPE
powerportalpowerportal2.0.13cpe:2.3:a:powerportal:powerportal:2.0.13:*:*:*:*:*:*:*

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.016

Percentile

87.8%

Related for CVE-2008-4361