Lucene search

K
cveIbmCVE-2012-0186
HistoryJun 22, 2012 - 10:24 a.m.

CVE-2012-0186

2012-06-2210:24:05
CWE-22
ibm
web.nvd.nist.gov
28
cve-2012-0186
directory traversal
ibm lotus expeditor
remote attackers
security vulnerability
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

6.6

Confidence

Low

EPSS

0.003

Percentile

69.2%

Directory traversal vulnerability in the Eclipse Help component in IBM Lotus Expeditor 6.1.x and 6.2.x before 6.2 FP5+Security Pack allows remote attackers to discover the locations of files via a crafted URL.

Affected configurations

Nvd
Node
ibmlotus_expeditorMatch6.1
OR
ibmlotus_expeditorMatch6.1.1
OR
ibmlotus_expeditorMatch6.2
OR
ibmlotus_expeditorMatch6.2.1
OR
ibmlotus_expeditorMatch6.2.2
OR
ibmlotus_expeditorMatch6.2.3
VendorProductVersionCPE
ibmlotus_expeditor6.1cpe:2.3:a:ibm:lotus_expeditor:6.1:*:*:*:*:*:*:*
ibmlotus_expeditor6.1.1cpe:2.3:a:ibm:lotus_expeditor:6.1.1:*:*:*:*:*:*:*
ibmlotus_expeditor6.2cpe:2.3:a:ibm:lotus_expeditor:6.2:*:*:*:*:*:*:*
ibmlotus_expeditor6.2.1cpe:2.3:a:ibm:lotus_expeditor:6.2.1:*:*:*:*:*:*:*
ibmlotus_expeditor6.2.2cpe:2.3:a:ibm:lotus_expeditor:6.2.2:*:*:*:*:*:*:*
ibmlotus_expeditor6.2.3cpe:2.3:a:ibm:lotus_expeditor:6.2.3:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

AI Score

6.6

Confidence

Low

EPSS

0.003

Percentile

69.2%

Related for CVE-2012-0186