5
CVE-2005-3040
- EPSS 1.93%
- Veröffentlicht 22.09.2005 10:03:00
- Zuletzt bearbeitet 16.06.2026 22:16:08
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Directory traversal vulnerability in the web interface (ISALogin.dll) for TAC Vista 4.0, and possibly other versions before 4.3, allows remote attackers to read arbitrary files via ".." sequences in the Template parameter.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.93% | 0.774 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://archives.neohapsis.com/archives/fulldisclosure/2005-09/0469.html
http://secunia.com/advisories/16854
http://securitytracker.com/id?1014923
http://www.cirt.dk/advisories/cirt-37-advisory.pdf
http://www.osvdb.org/19479