9.3
CVE-2012-0315
- EPSS 2.23%
- Veröffentlicht 22.02.2012 13:54:03
- Zuletzt bearbeitet 16.06.2026 23:37:05
- Quelle vultures@jpcert.or.jp
- CVE-Watchlists
- Unerledigt
Untrusted search path vulnerability in ALFTP before 5.31 allows local users to gain privileges via a Trojan horse executable file in a directory that is accessed for reading an extensionless file, as demonstrated by executing the README.exe file when a user attempts to access the README file.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.23% | 0.805 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
http://www.altools.jp/ETC/NEWS.aspx?mid=231&vidx=118
http://www.altools.jp/download.aspx
http://jvn.jp/en/jp/JVN85695061/995223/index.html
http://jvn.jp/en/jp/JVN85695061/index.html
http://jvndb.jvn.jp/jvndb/JVNDB-2012-000011