CVE-2013-1469 - CERT CVE
ID CVE-2013-1469
Sažetak Directory traversal vulnerability in install.php in Piwigo before 2.4.7 allows remote attackers to read and delete arbitrary files via a .. (dot dot) in the dl parameter.
Reference
CVSS
Base: 4.0
Impact: 4.9
Exploitability:4.9
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL NONE PARTIAL
CVSS vektor AV:N/AC:H/Au:N/C:P/I:N/A:P
Zadnje važnije ažuriranje 19-03-2013 - 04:00
Objavljeno 13-03-2013 - 20:55