5.8
CVE-2013-2182
- EPSS 5.6%
- Veröffentlicht 13.06.2014 14:55:12
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
The Mandril security plugin in Monkey HTTP Daemon (monkeyd) before 1.5.0 allows remote attackers to bypass access restrictions via a crafted URI, as demonstrated by an encoded forward slash.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Monkey-project ≫ Monkey Version <= 1.4.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.6% | 0.919 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.8 | 8.6 | 4.9 |
AV:N/AC:M/Au:N/C:P/I:P/A:N
|
http://bugs.monkey-project.com/ticket/186
http://osvdb.org/94287
http://secunia.com/advisories/53638
http://www.openwall.com/lists/oss-security/2013/06/14/11
http://www.securityfocus.com/bid/60569
https://github.com/monkey/monkey/commit/15f72c1ee5e0afad20232bdf0fcecab8d62a5d89
https://github.com/monkey/monkey/issues/92