6.5

CVE-2006-1485

Exploit
gm-upload.cgi in Greymatter 1.3.1 allows remote authenticated users with upload privileges to execute arbitrary programs by uploading files to locations within the web root.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GreymatterGreymatter Version <= 1.3.1
GreymatterGreymatter Version1.1b
GreymatterGreymatter Version1.2
GreymatterGreymatter Version1.3
GreymatterGreymatter Version1.21
GreymatterGreymatter Version1.21a
GreymatterGreymatter Version1.21b
GreymatterGreymatter Version1.21c
GreymatterGreymatter Version1.21d
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.37% 0.682
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/19423
Vendor Advisory
http://www.osvdb.org/24210
http://www.securityfocus.com/bid/17271
Exploit
http://www.vupen.com/english/advisories/2006/1138
https://exchange.xforce.ibmcloud.com/vulnerabilities/25496