7.5
CVE-2005-1657
- EPSS 1.91%
- Veröffentlicht 18.05.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:13:26
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple directory traversal vulnerabilities in Mercur Messaging 2005 SP2 allow remote attackers to perform unauthorized file operations via the Folder.Id parameter to (1) deletefolder.ctml, (2) deletemessage.ctml, (3) origmessage.ctml, or (4) readmessage.ctml, the Message.Id parameter to editmessage.ctml, or the (5) Message.Command parameter to messages.ctml.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mercur ≫ Mercur Messaging Version2005_sp2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.91% | 0.77 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/15234
http://www.osvdb.org/16220
http://www.osvdb.org/16221
http://www.osvdb.org/16222
http://www.osvdb.org/16223
http://www.osvdb.org/16224
http://www.osvdb.org/16225