CVE-2006-3015 - CERT CVE
ID CVE-2006-3015
Sažetak Argument injection vulnerability in WinSCP 3.8.1 build 328 allows remote attackers to upload or download arbitrary files via encoded spaces and double-quote characters in a scp or sftp URI.
Reference
CVSS
Base: 7.1
Impact: 9.2
Exploitability:4.9
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE NONE
CVSS vektor AV:N/AC:H/Au:N/C:C/I:C/A:N
Zadnje važnije ažuriranje 13-02-2024 - 17:49
Objavljeno 14-06-2006 - 15:06