Lucene search

K
cvelistRedhatCVELIST:CVE-2011-4350
HistoryNov 26, 2019 - 4:49 a.m.

CVE-2011-4350

2019-11-2604:49:52
redhat
www.cve.org

6.2 Medium

AI Score

Confidence

High

0.174 Low

EPSS

Percentile

96.1%

Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain content of arbitrary local files via specially-crafted URL request.

CNA Affected

[
  {
    "product": "yaws",
    "vendor": "yaws",
    "versions": [
      {
        "status": "affected",
        "version": "1.91"
      }
    ]
  }
]

6.2 Medium

AI Score

Confidence

High

0.174 Low

EPSS

Percentile

96.1%

Related for CVELIST:CVE-2011-4350