CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
PARTIAL
Availability Impact
NONE
AV:N/AC:L/Au:N/C:N/I:P/A:N
AI Score
Confidence
Low
EPSS
Percentile
80.5%
scripts/dget.pl in devscripts before 2.12.3 allows remote attackers to delete arbitrary files via a crafted (1) .dsc or (2) .changes file, probably related to a NULL byte in a filename.
Vendor | Product | Version | CPE |
---|---|---|---|
devscripts_devel_team | devscripts | * | cpe:2.3:a:devscripts_devel_team:devscripts:*:*:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.7.0 | cpe:2.3:a:devscripts_devel_team:devscripts:2.7.0:*:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.8.14 | cpe:2.3:a:devscripts_devel_team:devscripts:2.8.14:*:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.9.21 | cpe:2.3:a:devscripts_devel_team:devscripts:2.9.21:*:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.9.22 | cpe:2.3:a:devscripts_devel_team:devscripts:2.9.22:*:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.9.23 | cpe:2.3:a:devscripts_devel_team:devscripts:2.9.23:*:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.9.24 | cpe:2.3:a:devscripts_devel_team:devscripts:2.9.24:*:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.9.25 | cpe:2.3:a:devscripts_devel_team:devscripts:2.9.25:*:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.9.26 | cpe:2.3:a:devscripts_devel_team:devscripts:2.9.26:etch1:*:*:*:*:*:* |
devscripts_devel_team | devscripts | 2.9.26 | cpe:2.3:a:devscripts_devel_team:devscripts:2.9.26:etch2:*:*:*:*:*:* |