94 lines
2.8 KiB
JSON
Raw Normal View History

2023-04-24 12:24:31 +02:00
{
"id": "CVE-2005-4373",
"sourceIdentifier": "cve@mitre.org",
"published": "2005-12-20T02:03:00.000",
"lastModified": "2008-09-20T04:43:01.937",
"vulnStatus": "Analyzed",
"descriptions": [
{
"lang": "en",
"value": "Adaptive Website Framework (AWF) 2.10 and earlier allows remote attackers to obtain the full path of the application via an invalid mode parameter to community.html, which leaks the path in an error message."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 5.0
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": false,
"criteria": "cpe:2.3:a:liquid_bytes_technologies:adaptive_website_framework:1.11:*:*:*:*:*:*:*",
"matchCriteriaId": "9EF74DAD-E978-4797-98A8-64A9874DEE39"
},
{
"vulnerable": false,
"criteria": "cpe:2.3:a:liquid_bytes_technologies:adaptive_website_framework:2.00:*:*:*:*:*:*:*",
"matchCriteriaId": "4EE068EB-D6B3-4222-8710-F4A0949C9BDB"
},
{
"vulnerable": false,
"criteria": "cpe:2.3:a:liquid_bytes_technologies:adaptive_website_framework:2.01:*:*:*:*:*:*:*",
"matchCriteriaId": "26D3ED9E-98FF-4D11-AAB2-F00A7E5F1AE4"
},
{
"vulnerable": false,
"criteria": "cpe:2.3:a:liquid_bytes_technologies:adaptive_website_framework:2.10:*:*:*:*:*:*:*",
"matchCriteriaId": "A72D1A2A-6A50-4AA2-BC1E-EED9A6588573"
}
]
}
]
}
],
"references": [
{
"url": "http://pridels0.blogspot.com/2005/12/awf-adaptive-website-framework-vuln.html",
"source": "cve@mitre.org"
},
{
"url": "http://www.awf-cms.org/news.html",
"source": "cve@mitre.org"
}
]
}