7.8

CVE-2006-1953

Directory traversal vulnerability in Caucho Resin 3.0.17 and 3.0.18 for Windows allows remote attackers to read arbitrary files via a "C:%5C" (encoded drive letter) in a URL.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Caucho TechnologyResin Version3.0.17 Editionwindows
Caucho TechnologyResin Version3.0.18 Editionwindows
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.72% 0.841
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:C/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://archives.neohapsis.com/archives/vulnwatch/2006-q2/0026.html
http://secunia.com/advisories/20125
http://securityreason.com/securityalert/904
http://securitytracker.com/id?1016109
http://www.osvdb.org/25570
http://www.rapid7.com/advisories/R7-0024.html
http://www.securityfocus.com/archive/1/434150/100/0/threaded
http://www.securityfocus.com/bid/18005
Patch
http://www.vupen.com/english/advisories/2006/1831
https://exchange.xforce.ibmcloud.com/vulnerabilities/26478