7.5

CVE-2009-4592

Unspecified vulnerability in base_local_rules.php in Basic Analysis and Security Engine (BASE) before 1.4.4 allows remote attackers to include arbitrary local files via unknown vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SecureideasBase Version <= 1.4.3
SecureideasBase Version0.9.8
SecureideasBase Version0.9.9
SecureideasBase Version1.0
SecureideasBase Version1.2.4
SecureideasBase Version1.2.5
SecureideasBase Version1.2.6
SecureideasBase Version1.2.7
SecureideasBase Version1.3.5
SecureideasBase Version1.3.6
SecureideasBase Version1.3.8
SecureideasBase Version1.3.9
SecureideasBase Version1.4.0
SecureideasBase Version1.4.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.43% 0.696
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://base.secureideas.net/news.php
http://secunia.com/advisories/37147
Vendor Advisory
http://secureideas.cvs.sourceforge.net/viewvc/secureideas/base-php4/docs/CHANGELOG?revision=1.359&view=markup
http://www.vupen.com/english/advisories/2009/3054
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/53969