Lucene search

K
nvd[email protected]NVD:CVE-2011-4810
HistoryDec 14, 2011 - 12:55 a.m.

CVE-2011-4810

2011-12-1400:55:19
CWE-22
web.nvd.nist.gov
3

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.9

Confidence

Low

EPSS

0.008

Percentile

81.4%

Multiple directory traversal vulnerabilities in WHMCompleteSolution (WHMCS) 3.x and 4.x allow remote attackers to read arbitrary files via the templatefile parameter to (1) submitticket.php and (2) downloads.php, and (3) the report parameter to admin/reports.php.

Affected configurations

Nvd
Node
whmcswhmcompletesolutionMatch3.0.0
OR
whmcswhmcompletesolutionMatch4.0.0
OR
whmcswhmcompletesolutionMatch4.0.1
OR
whmcswhmcompletesolutionMatch4.0.2
OR
whmcswhmcompletesolutionMatch4.1.0
OR
whmcswhmcompletesolutionMatch4.1.1
OR
whmcswhmcompletesolutionMatch4.1.2
OR
whmcswhmcompletesolutionMatch4.2.0
OR
whmcswhmcompletesolutionMatch4.2.0beta_r1
OR
whmcswhmcompletesolutionMatch4.2.0beta_r2
OR
whmcswhmcompletesolutionMatch4.2.0beta_r3
OR
whmcswhmcompletesolutionMatch4.2.1
OR
whmcswhmcompletesolutionMatch4.3.0
OR
whmcswhmcompletesolutionMatch4.3.1
OR
whmcswhmcompletesolutionMatch4.4.0
OR
whmcswhmcompletesolutionMatch4.4.1
OR
whmcswhmcompletesolutionMatch4.4.2
OR
whmcswhmcompletesolutionMatch4.5.0
OR
whmcswhmcompletesolutionMatch4.5.1
OR
whmcswhmcompletesolutionMatch4.5.2
VendorProductVersionCPE
whmcswhmcompletesolution3.0.0cpe:2.3:a:whmcs:whmcompletesolution:3.0.0:*:*:*:*:*:*:*
whmcswhmcompletesolution4.0.0cpe:2.3:a:whmcs:whmcompletesolution:4.0.0:*:*:*:*:*:*:*
whmcswhmcompletesolution4.0.1cpe:2.3:a:whmcs:whmcompletesolution:4.0.1:*:*:*:*:*:*:*
whmcswhmcompletesolution4.0.2cpe:2.3:a:whmcs:whmcompletesolution:4.0.2:*:*:*:*:*:*:*
whmcswhmcompletesolution4.1.0cpe:2.3:a:whmcs:whmcompletesolution:4.1.0:*:*:*:*:*:*:*
whmcswhmcompletesolution4.1.1cpe:2.3:a:whmcs:whmcompletesolution:4.1.1:*:*:*:*:*:*:*
whmcswhmcompletesolution4.1.2cpe:2.3:a:whmcs:whmcompletesolution:4.1.2:*:*:*:*:*:*:*
whmcswhmcompletesolution4.2.0cpe:2.3:a:whmcs:whmcompletesolution:4.2.0:*:*:*:*:*:*:*
whmcswhmcompletesolution4.2.0cpe:2.3:a:whmcs:whmcompletesolution:4.2.0:beta_r1:*:*:*:*:*:*
whmcswhmcompletesolution4.2.0cpe:2.3:a:whmcs:whmcompletesolution:4.2.0:beta_r2:*:*:*:*:*:*
Rows per page:
1-10 of 201

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.9

Confidence

Low

EPSS

0.008

Percentile

81.4%

Related for NVD:CVE-2011-4810