CVE-2009-0865 - CERT CVE
ID CVE-2009-0865
Sažetak Directory traversal vulnerability in the SnapShotToFile method in the GeoVision LiveX (aka LiveX_v8200) ActiveX control 8.1.2 and 8.2.0 in LIVEX_~1.OCX allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument, possibly involving the PlayX and SnapShotX methods.
Reference
CVSS
Base: 8.8
Impact: 9.2
Exploitability:8.6
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE COMPLETE COMPLETE
CVSS vektor AV:N/AC:M/Au:N/C:N/I:C/A:C
Zadnje važnije ažuriranje 19-10-2017 - 01:30
Objavljeno 10-03-2009 - 14:30