2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2004-1444" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2004-12-31T05:00:00.000" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-20T23:50:53.780" ,
2023-04-24 12:24:31 +02:00
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Directory traversal vulnerability in Roundup 0.6.4 and earlier allows remote attackers to view arbitrary files via .. (dot dot) sequences in an @@ command in an HTTP GET request."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 5.0 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "NETWORK" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "NONE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "MEDIUM" ,
"exploitabilityScore" : 10.0 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-22"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "0.6.4" ,
"matchCriteriaId" : "05AF3815-C649-42AA-94CF-99C0B37B3FFE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.1.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "19ECB7A0-10A6-4745-A14A-1FDCBA54FA3E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.1.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "9968A3F6-095B-40E8-B5B3-FF0B9DDF4D66"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.1.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "53AB2FBF-3D72-4548-B7EF-A9966DDADE99"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.1.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0079C51C-5341-4ABD-AEC3-ED95D6B3849E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D942F581-EEE1-4475-91BC-A381F647DB4E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "85EA6E14-83A2-4EB5-B288-1BAAAE7BB15E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3B79CB12-0F99-4337-8FFE-300E1F2635A8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5D7924E0-09DE-4231-8543-93F132C525D3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B5181473-7735-4C4D-84EB-45123A4CB2EA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "611D6B74-E98A-4060-A4E8-0066B23097C5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DDDDAB17-2E78-4F3A-8129-5F6B0AD6824C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7BC05048-471F-43B8-84F1-B3A4AD0BEB1E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.2.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D5EA1112-FD27-4560-99B9-F95CB4875B50"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.3.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3B1C7A4E-B709-45B9-820B-9DA47D09A768"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.3.0:pre1:*:*:*:*:*:*" ,
"matchCriteriaId" : "12248494-B69A-493A-8BAA-AED8B6D90967"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.3.0:pre2:*:*:*:*:*:*" ,
"matchCriteriaId" : "83D18991-4357-4EDA-B58A-C2B2D55AF65C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.3.0:pre3:*:*:*:*:*:*" ,
"matchCriteriaId" : "3EA23543-A008-4A35-A2FD-A5C92419B5D4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.4.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "85911897-FF14-4287-A70C-2BE1533D7DD8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.4.0:b1:*:*:*:*:*:*" ,
"matchCriteriaId" : "C5AF4647-28B7-4A1F-8CE0-1AECF5E9DA52"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.4.0:b2:*:*:*:*:*:*" ,
"matchCriteriaId" : "7491CD5B-BE8B-43D9-9A9C-A9D9091FFF98"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.4.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C170F3BF-A954-4259-AFEA-8FBBA9A03E8C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.4.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "368312AF-2FC0-4528-A735-FE8E6412637D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.4.2:pr1:*:*:*:*:*:*" ,
"matchCriteriaId" : "15A83A5C-A463-4A90-9C2B-CD4BF64D9F93"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BFA22ED9-74AB-4B1A-AE32-002CBC70DD33"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7CA7035B-ACAD-43CC-8B0A-5D5C71ED4D00"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.0:beta1:*:*:*:*:*:*" ,
"matchCriteriaId" : "5FF02B8B-EE0E-490C-B611-9E9073B08A16"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.0:beta2:*:*:*:*:*:*" ,
"matchCriteriaId" : "FB0B1077-5E96-49D8-8C42-E1B269D977D2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.0:pr1:*:*:*:*:*:*" ,
"matchCriteriaId" : "62D6C85E-EDA1-4F97-86F7-A55D0209E9E9"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "046CAABB-4A40-4734-9506-FE9E5D74ED6E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3D7C743E-B264-4FEB-AE0D-6B63C6D25CD3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "18AC89CD-2092-4694-8DA3-268466CB1728"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C8EB5412-927B-49F4-B1F1-0890AB674F1D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B52588E4-C6C4-45DE-B8C2-4948AEAA2E75"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7C747D8A-1FD7-4E80-949F-49833D8A871B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "74CEEC73-4AF9-4E5A-A526-101E23A7ED2F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.8:stable:*:*:*:*:*:*" ,
"matchCriteriaId" : "6890C793-5346-4274-91F6-D3A1F4D4454B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.5.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "10F15818-1EC9-4E72-8E10-BF7CBEE6DECC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.6.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2136129D-9795-4281-A07E-297BE50A7A93"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.6.0:b1:*:*:*:*:*:*" ,
"matchCriteriaId" : "31430BEC-1190-46F9-82B8-6EBE6CBE1BEE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.6.0:b2:*:*:*:*:*:*" ,
"matchCriteriaId" : "E0855645-97A3-4CA1-9A7C-3050151302E3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.6.0:b3:*:*:*:*:*:*" ,
"matchCriteriaId" : "86F1057A-0273-4B77-8DD9-32D54676F991"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.6.0:b4:*:*:*:*:*:*" ,
"matchCriteriaId" : "ACC3C30E-4796-49CE-AFDF-DC7B29737FAB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.6.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "068DEB7C-DAC2-45D6-A0B6-DC54EF52DF14"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.6.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "960311B7-4C1B-4D7F-B8D1-A99977C389D3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:roundup-tracker:roundup:0.6.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "953F1AAF-CFF8-462C-99E4-7A4D8404BCEA"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://packetstormsecurity.nl/0406-exploits/roundUP.txt" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Exploit"
]
} ,
2024-04-04 08:46:00 +00:00
{
"url" : "http://secunia.com/advisories/11801/" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Exploit" ,
"Patch" ,
"Vendor Advisory"
]
} ,
2023-04-24 12:24:31 +02:00
{
"url" : "http://securitytracker.com/id?1010415" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://sourceforge.net/tracker/index.php?func=detail&aid=961511&group_id=31577&atid=402788" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "http://www.gentoo.org/security/en/glsa/glsa-200408-09.xml" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch"
]
} ,
{
"url" : "http://www.securityfocus.com/bid/10495" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Exploit" ,
"Patch"
]
} ,
{
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/16350" ,
"source" : "cve@mitre.org"
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "http://packetstormsecurity.nl/0406-exploits/roundUP.txt" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Exploit"
]
} ,
{
"url" : "http://secunia.com/advisories/11801/" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Exploit" ,
"Patch" ,
"Vendor Advisory"
]
} ,
{
"url" : "http://securitytracker.com/id?1010415" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://sourceforge.net/tracker/index.php?func=detail&aid=961511&group_id=31577&atid=402788" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.gentoo.org/security/en/glsa/glsa-200408-09.xml" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch"
]
} ,
{
"url" : "http://www.securityfocus.com/bid/10495" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Exploit" ,
"Patch"
]
} ,
{
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/16350" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2023-04-24 12:24:31 +02:00
}
]
}