83 lines
2.2 KiB
JSON
Raw Normal View History

2023-04-24 12:24:31 +02:00
{
"id": "CVE-2001-0263",
"sourceIdentifier": "cve@mitre.org",
"published": "2001-06-18T04:00:00.000",
"lastModified": "2017-12-19T02:29:19.177",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows attackers to read file attributes outside of the web root via the (1) SIZE and (2) MDTM commands when the \"show relative paths\" option is not enabled."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL",
"baseScore": 7.5
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": true,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:gene6:g6_ftp_server:2.0:*:*:*:*:*:*:*",
"matchCriteriaId": "F2A93EE9-255E-499A-ABED-E9E94409AB39"
}
]
}
]
}
],
"references": [
{
"url": "http://www.atstake.com/research/advisories/2001/a040301-1.txt",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/2537",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/6330",
"source": "cve@mitre.org"
}
]
}