Lucene search

K
cveMitreCVE-2011-5075
HistoryJan 29, 2012 - 11:55 a.m.

CVE-2011-5075

2012-01-2911:55:02
mitre
web.nvd.nist.gov
21
cve-2011-5075
sit!
information disclosure
translate.php
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.3

Confidence

Low

EPSS

0.003

Percentile

72.0%

translate.php in Support Incident Tracker (aka SiT!) 3.45 through 3.65 allows remote attackers to obtain sensitive information via a direct request using the save action, which reveals the installation path.

Affected configurations

Nvd
Node
sitrackersupport_incident_trackerMatch3.6
OR
sitrackersupport_incident_trackerMatch3.45
OR
sitrackersupport_incident_trackerMatch3.45beta1
OR
sitrackersupport_incident_trackerMatch3.50
OR
sitrackersupport_incident_trackerMatch3.50beta1
OR
sitrackersupport_incident_trackerMatch3.51
OR
sitrackersupport_incident_trackerMatch3.60
OR
sitrackersupport_incident_trackerMatch3.61
OR
sitrackersupport_incident_trackerMatch3.62
OR
sitrackersupport_incident_trackerMatch3.63
OR
sitrackersupport_incident_trackerMatch3.63beta1
OR
sitrackersupport_incident_trackerMatch3.64
OR
sitrackersupport_incident_trackerMatch3.65
VendorProductVersionCPE
sitrackersupport_incident_tracker3.6cpe:2.3:a:sitracker:support_incident_tracker:3.6:*:*:*:*:*:*:*
sitrackersupport_incident_tracker3.45cpe:2.3:a:sitracker:support_incident_tracker:3.45:*:*:*:*:*:*:*
sitrackersupport_incident_tracker3.45cpe:2.3:a:sitracker:support_incident_tracker:3.45:beta1:*:*:*:*:*:*
sitrackersupport_incident_tracker3.50cpe:2.3:a:sitracker:support_incident_tracker:3.50:*:*:*:*:*:*:*
sitrackersupport_incident_tracker3.50cpe:2.3:a:sitracker:support_incident_tracker:3.50:beta1:*:*:*:*:*:*
sitrackersupport_incident_tracker3.51cpe:2.3:a:sitracker:support_incident_tracker:3.51:*:*:*:*:*:*:*
sitrackersupport_incident_tracker3.60cpe:2.3:a:sitracker:support_incident_tracker:3.60:*:*:*:*:*:*:*
sitrackersupport_incident_tracker3.61cpe:2.3:a:sitracker:support_incident_tracker:3.61:*:*:*:*:*:*:*
sitrackersupport_incident_tracker3.62cpe:2.3:a:sitracker:support_incident_tracker:3.62:*:*:*:*:*:*:*
sitrackersupport_incident_tracker3.63cpe:2.3:a:sitracker:support_incident_tracker:3.63:*:*:*:*:*:*:*
Rows per page:
1-10 of 131

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.3

Confidence

Low

EPSS

0.003

Percentile

72.0%

Related for CVE-2011-5075