9.3
CVE-2012-0315
- EPSS 2.21%
- Veröffentlicht 22.02.2012 13:54:03
- Zuletzt bearbeitet 16.06.2026 23:37:05
- CVE-Watchlists
- Unerledigt
Untrusted search path vulnerability in ALFTP before 5.31 allows local users to gain privileges via a Trojan horse executable file in a directory that is accessed for reading an extensionless file, as demonstrated by executing the README.exe file when a user attempts to access the README file.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.21% | 0.803 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
http://www.altools.jp/ETC/NEWS.aspx?mid=231&vidx=118
http://www.altools.jp/download.aspx
http://jvn.jp/en/jp/JVN85695061/995223/index.html
http://jvn.jp/en/jp/JVN85695061/index.html
http://jvndb.jvn.jp/jvndb/JVNDB-2012-000011