5
CVE-2005-3484
- EPSS 1.77%
- Veröffentlicht 03.11.2005 22:02:00
- Zuletzt bearbeitet 16.06.2026 22:17:03
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Directory traversal vulnerability in NeroNET 1.2.0.2 and earlier allows remote attackers to read arbitrary files with certain file extensions (such as ZIP, AVI, JPG, TXT, and HTML) via ".." and hex-encoded (1) slash "/" ("%2f") or (2) backslash "\" ("%5c") sequences.| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.77% | 0.752 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://aluigi.altervista.org/adv/neronet-adv.txt
http://marc.info/?l=full-disclosure&m=113096009930152&w=2
http://secunia.com/advisories/17421
http://www.securityfocus.com/bid/15288
http://www.vupen.com/english/advisories/2005/2287