2.6

CVE-2005-0192

Directory traversal vulnerability in the parsing of Skin file names in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in an RJS filename.

Data is provided by the National Vulnerability Database (NVD)
RealnetworksRealone Player Version1.0
RealnetworksRealone Player Version2.0
RealnetworksRealplayer Version10.0 Langde
RealnetworksRealplayer Version10.0 Langen
RealnetworksRealplayer Version10.0 Langja
RealnetworksRealplayer Version10.0 Updatebeta
RealnetworksRealplayer Version10.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.35% 0.834
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.6 4.9 2.9
AV:N/AC:H/Au:N/C:P/I:N/A:N