Lucene search

K
cveMitreCVE-2015-7602
HistorySep 29, 2015 - 7:59 p.m.

CVE-2015-7602

2015-09-2919:59:10
CWE-22
mitre
web.nvd.nist.gov
27
cve-2015-7602
directory traversal
bisonware bisonftp 3.5
remote attack
arbitrary file read
nvd

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.458

Percentile

97.4%

Directory traversal vulnerability in BisonWare BisonFTP 3.5 allows remote attackers to read arbitrary files via a …/ (dot dot slash) in a RETR command.

Affected configurations

Nvd
Node
bisonwarebisonftpMatch3.5
VendorProductVersionCPE
bisonwarebisonftp3.5cpe:2.3:a:bisonware:bisonftp:3.5:*:*:*:*:*:*:*

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.8

Confidence

Low

EPSS

0.458

Percentile

97.4%