Lucene search

K
cvelistMitreCVELIST:CVE-2010-3468
HistoryOct 03, 2022 - 4:20 p.m.

CVE-2010-3468

2022-10-0316:20:55
mitre
www.cve.org
cve-2010-3468
directory traversal
mura cms
sava cms
remote attackers
arbitrary files
fileid parameter

6.6 Medium

AI Score

Confidence

Low

0.03 Low

EPSS

Percentile

91.0%

Directory traversal vulnerability in fileManager.cfc in Mura CMS 5.1 before 5.1.498 and 5.2 before 5.2.2809, and Sava CMS 5 through 5.2, allows remote attackers to read arbitrary files via a … (dot dot) in the FILEID parameter to the default URI under tasks/render/file/.

6.6 Medium

AI Score

Confidence

Low

0.03 Low

EPSS

Percentile

91.0%