Lucene search

K
nvd[email protected]NVD:CVE-2011-1589
HistoryApr 29, 2011 - 10:55 p.m.

CVE-2011-1589

2011-04-2922:55:02
CWE-22
web.nvd.nist.gov

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.4 Medium

AI Score

Confidence

Low

0.012 Low

EPSS

Percentile

85.1%

Directory traversal vulnerability in Path.pm in Mojolicious before 1.16 allows remote attackers to read arbitrary files via a %2f…%2f (encoded slash dot dot slash) in a URI.

Affected configurations

NVD
Node
mojoliciousmojoliciousMatch0.2
OR
mojoliciousmojoliciousMatch0.3
OR
mojoliciousmojoliciousMatch0.4
OR
mojoliciousmojoliciousMatch0.5
OR
mojoliciousmojoliciousMatch0.6
OR
mojoliciousmojoliciousMatch0.7
OR
mojoliciousmojoliciousMatch0.8
OR
mojoliciousmojoliciousMatch0.8.1
OR
mojoliciousmojoliciousMatch0.8.2
OR
mojoliciousmojoliciousMatch0.8.3
OR
mojoliciousmojoliciousMatch0.8.4
OR
mojoliciousmojoliciousMatch0.8.5
OR
mojoliciousmojoliciousMatch0.9
OR
mojoliciousmojoliciousMatch0.8006
OR
mojoliciousmojoliciousMatch0.8007
OR
mojoliciousmojoliciousMatch0.8008
OR
mojoliciousmojoliciousMatch0.8009
OR
mojoliciousmojoliciousMatch0.9001
OR
mojoliciousmojoliciousMatch0.9002
OR
mojoliciousmojoliciousMatch0.991231
OR
mojoliciousmojoliciousMatch0.991232
OR
mojoliciousmojoliciousMatch0.991233
OR
mojoliciousmojoliciousMatch0.991234
OR
mojoliciousmojoliciousMatch0.991235
OR
mojoliciousmojoliciousMatch0.991236
OR
mojoliciousmojoliciousMatch0.991237
OR
mojoliciousmojoliciousMatch0.991238
OR
mojoliciousmojoliciousMatch0.991239
OR
mojoliciousmojoliciousMatch0.991240
OR
mojoliciousmojoliciousMatch0.991241
OR
mojoliciousmojoliciousMatch0.991242
OR
mojoliciousmojoliciousMatch0.991243
OR
mojoliciousmojoliciousMatch0.991244
OR
mojoliciousmojoliciousMatch0.991245
OR
mojoliciousmojoliciousMatch0.991246
OR
mojoliciousmojoliciousMatch0.991250
OR
mojoliciousmojoliciousMatch0.991251
OR
mojoliciousmojoliciousMatch0.999901
OR
mojoliciousmojoliciousMatch0.999902
OR
mojoliciousmojoliciousMatch0.999903
OR
mojoliciousmojoliciousMatch0.999904
OR
mojoliciousmojoliciousMatch0.999905
OR
mojoliciousmojoliciousMatch0.999906
OR
mojoliciousmojoliciousMatch0.999907
OR
mojoliciousmojoliciousMatch0.999908
OR
mojoliciousmojoliciousMatch0.999909
OR
mojoliciousmojoliciousMatch0.999910
OR
mojoliciousmojoliciousMatch0.999911
OR
mojoliciousmojoliciousMatch0.999912
OR
mojoliciousmojoliciousMatch0.999913
OR
mojoliciousmojoliciousMatch0.999914
OR
mojoliciousmojoliciousMatch0.999920
OR
mojoliciousmojoliciousMatch0.999921
OR
mojoliciousmojoliciousMatch0.999922
OR
mojoliciousmojoliciousMatch0.999923
OR
mojoliciousmojoliciousMatch0.999924
OR
mojoliciousmojoliciousMatch0.999925
OR
mojoliciousmojoliciousMatch0.999926
OR
mojoliciousmojoliciousMatch0.999927
OR
mojoliciousmojoliciousMatch0.999928
OR
mojoliciousmojoliciousMatch0.999929
OR
mojoliciousmojoliciousMatch0.999930
OR
mojoliciousmojoliciousMatch0.999931
OR
mojoliciousmojoliciousMatch0.999932
OR
mojoliciousmojoliciousMatch0.999933
OR
mojoliciousmojoliciousMatch0.999934
OR
mojoliciousmojoliciousMatch0.999935
OR
mojoliciousmojoliciousMatch0.999936
OR
mojoliciousmojoliciousMatch0.999937
OR
mojoliciousmojoliciousMatch0.999938
OR
mojoliciousmojoliciousMatch0.999939
OR
mojoliciousmojoliciousMatch0.999940
OR
mojoliciousmojoliciousMatch0.999941
OR
mojoliciousmojoliciousMatch0.999950
OR
mojoliciousmojoliciousMatch1.0
OR
mojoliciousmojoliciousMatch1.1
OR
mojoliciousmojoliciousMatch1.01
OR
mojoliciousmojoliciousMatch1.11
OR
mojoliciousmojoliciousMatch1.12
OR
mojoliciousmojoliciousMatch1.13
OR
mojoliciousmojoliciousMatch1.14
OR
mojoliciousmojoliciousMatch1.15

References

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

6.4 Medium

AI Score

Confidence

Low

0.012 Low

EPSS

Percentile

85.1%