6.4
CVE-2004-2743
- EPSS 1.45%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:10:15
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
upload.cgi in Mega Upload Progress Bar before 1.45 allows remote attackers to copy or overwrite arbitrary files via unspecified parameters related to names of uploaded files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Raditha Dissanayake ≫ Mega Upload Progress Bar Version1.30
Raditha Dissanayake ≫ Mega Upload Progress Bar Version1.35
Raditha Dissanayake ≫ Mega Upload Progress Bar Version1.43
Raditha Dissanayake ≫ Mega Upload Progress Bar Version1.44
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.45% | 0.699 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|
http://secunia.com/advisories/12993
http://securitytracker.com/id?1011960
http://sourceforge.net/project/shownotes.php?release_id=277989
http://www.osvdb.org/11171
http://www.raditha.com/blog/archives/000547.html
http://www.securityfocus.com/bid/11547
https://exchange.xforce.ibmcloud.com/vulnerabilities/17882