CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
NONE
Availability Impact
NONE
AV:N/AC:L/Au:N/C:P/I:N/A:N
AI Score
Confidence
Low
EPSS
Percentile
94.2%
Jose Ramon Palanco discovered that the mono System.Web class did not
consistently verify local file paths. As a result, the source code for
mono web applications could be retrieved remotely, possibly leading to
further compromise via the application’s source.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 6.10 | noarch | libmono-system-web2.0-cil | < 1.1.17.1-1ubuntu7.1 | UNKNOWN |
Ubuntu | 6.10 | noarch | libmono-system-web1.0-cil | < 1.1.17.1-1ubuntu7.1 | UNKNOWN |
Ubuntu | 6.06 | noarch | mono-classlib-2.0 | < 1.1.13.6-0ubuntu3.2 | UNKNOWN |
Ubuntu | 6.06 | noarch | mono-classlib-1.0 | < 1.1.13.6-0ubuntu3.2 | UNKNOWN |