Lucene search

K
cve[email protected]CVE-2015-1306
HistoryJan 22, 2015 - 3:59 p.m.

CVE-2015-1306

2015-01-2215:59:00
CWE-200
web.nvd.nist.gov
37
sympa 6.0.x
sympa 6.1.x
remote attackers
arbitrary files
cve-2015-1306
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.005

Percentile

77.1%

The newsletter posting area in the web interface in Sympa 6.0.x before 6.0.10 and 6.1.x before 6.1.24 allows remote attackers to read arbitrary files via unspecified vectors.

Affected configurations

NVD
Node
sympasympaMatch6.0.0
OR
sympasympaMatch6.0.1
OR
sympasympaMatch6.0.2
OR
sympasympaMatch6.0.3
OR
sympasympaMatch6.0.4
OR
sympasympaMatch6.0.5
OR
sympasympaMatch6.0.6
OR
sympasympaMatch6.0.7
OR
sympasympaMatch6.0.8
OR
sympasympaMatch6.0.9
OR
sympasympaMatch6.1.0
OR
sympasympaMatch6.1.1
OR
sympasympaMatch6.1.2
OR
sympasympaMatch6.1.3
OR
sympasympaMatch6.1.4
OR
sympasympaMatch6.1.5
OR
sympasympaMatch6.1.6
OR
sympasympaMatch6.1.7
OR
sympasympaMatch6.1.8
OR
sympasympaMatch6.1.9
OR
sympasympaMatch6.1.10
OR
sympasympaMatch6.1.11
OR
sympasympaMatch6.1.12
OR
sympasympaMatch6.1.13
OR
sympasympaMatch6.1.14
OR
sympasympaMatch6.1.15
OR
sympasympaMatch6.1.16
OR
sympasympaMatch6.1.17
OR
sympasympaMatch6.1.18
OR
sympasympaMatch6.1.19
OR
sympasympaMatch6.1.20
OR
sympasympaMatch6.1.21
OR
sympasympaMatch6.1.22
OR
sympasympaMatch6.1.23
VendorProductVersionCPE
sympasympa6.1.10cpe:/a:sympa:sympa:6.1.10:::
sympasympa6.1.1cpe:/a:sympa:sympa:6.1.1:::
sympasympa6.0.5cpe:/a:sympa:sympa:6.0.5:::
sympasympa6.1.2cpe:/a:sympa:sympa:6.1.2:::
sympasympa6.0.0cpe:/a:sympa:sympa:6.0.0:::
sympasympa6.0.6cpe:/a:sympa:sympa:6.0.6:::
sympasympa6.1.12cpe:/a:sympa:sympa:6.1.12:::
sympasympa6.1.20cpe:/a:sympa:sympa:6.1.20:::
sympasympa6.1.0cpe:/a:sympa:sympa:6.1.0:::
sympasympa6.1.17cpe:/a:sympa:sympa:6.1.17:::
Rows per page:
1-10 of 341

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.005

Percentile

77.1%