7.5
CVE-2005-3414
- EPSS 1.71%
- Veröffentlicht 01.11.2005 20:03:00
- Zuletzt bearbeitet 16.06.2026 22:16:55
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
eyeOS 0.8.4 stores usrinfo.xml under the web document root with insufficient access control, which allows remote attackers to obtain user credentials.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Eyeos Project ≫ Eyeos Version0.8.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.71% | 0.743 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/17105
http://www.thebillygoatcurse.com/advisories/eyeOS_0.8.4_Multiple.pdf
http://www.vupen.com/english/advisories/2005/2259
http://www.osvdb.org/20411
http://www.securityfocus.com/bid/15256
https://exchange.xforce.ibmcloud.com/vulnerabilities/22938