mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-07-30 18:04:30 +00:00
108 lines
4.0 KiB
JSON
108 lines
4.0 KiB
JSON
{
|
|
"data_type": "CVE",
|
|
"data_format": "MITRE",
|
|
"data_version": "4.0",
|
|
"CVE_data_meta": {
|
|
"ID": "CVE-2017-20145",
|
|
"TITLE": "Tecrail Responsive Filemanger path traversal",
|
|
"REQUESTER": "cna@vuldb.com",
|
|
"ASSIGNER": "cna@vuldb.com",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"generator": "vuldb.com",
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"vendor_name": "Tecrail",
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "Responsive Filemanger",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "9.0"
|
|
},
|
|
{
|
|
"version_value": "9.1"
|
|
},
|
|
{
|
|
"version_value": "9.2"
|
|
},
|
|
{
|
|
"version_value": "9.3"
|
|
},
|
|
{
|
|
"version_value": "9.4"
|
|
},
|
|
{
|
|
"version_value": "9.5"
|
|
},
|
|
{
|
|
"version_value": "9.6"
|
|
},
|
|
{
|
|
"version_value": "9.7"
|
|
},
|
|
{
|
|
"version_value": "9.8"
|
|
},
|
|
{
|
|
"version_value": "9.9"
|
|
},
|
|
{
|
|
"version_value": "9.10"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "CWE-22 Path Traversal"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "A vulnerability was found in Tecrail Responsive Filemanger up to 9.10.x and classified as critical. The manipulation leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 9.11.0 is able to address this issue. It is recommended to upgrade the affected component."
|
|
}
|
|
]
|
|
},
|
|
"credit": "Wiswat Aswamenakul",
|
|
"impact": {
|
|
"cvss": {
|
|
"version": "3.1",
|
|
"baseScore": "6.3",
|
|
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L"
|
|
}
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"url": "http://seclists.org/fulldisclosure/2017/Feb/19",
|
|
"refsource": "MISC",
|
|
"name": "http://seclists.org/fulldisclosure/2017/Feb/19"
|
|
},
|
|
{
|
|
"url": "https://vuldb.com/?id.96818",
|
|
"refsource": "MISC",
|
|
"name": "https://vuldb.com/?id.96818"
|
|
}
|
|
]
|
|
}
|
|
} |