CVE-2007-4031 - CERT CVE
ID CVE-2007-4031
Sažetak Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to delete arbitrary files via a .. (dot dot) in the argument to the deleteReport method, probably related to the SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll.
Reference
CVSS
Base: 7.8
Impact: 7.8
Exploitability:8.6
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL COMPLETE
CVSS vektor AV:N/AC:M/Au:N/C:N/I:P/A:C
Zadnje važnije ažuriranje 29-09-2017 - 01:29
Objavljeno 27-07-2007 - 22:30