{ "id": "CVE-2011-3977", "sourceIdentifier": "cve@mitre.org", "published": "2011-10-04T10:55:10.740", "lastModified": "2018-10-09T19:33:25.683", "vulnStatus": "Modified", "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in nxconfigure.sh in NoMachine NX Node 3.x before 3.5.0-4 and NX Server 3.x before 3.5.0-5 allows local users to read arbitrary files via unknown vectors." }, { "lang": "es", "value": "Vulnerabilidad no especificada en nxconfigure.sh en NoMachine NX Nodo v3.x anterior a v3.5.0-4 y NX Server v3.x anterior a v3.5.0-5 permite a usuarios locales leer ficheros arbitrarios a trav\u00e9s de vectores desconocidos." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:L/AC:L/Au:N/C:C/I:C/A:C", "accessVector": "LOCAL", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "availabilityImpact": "COMPLETE", "baseScore": 7.2 }, "baseSeverity": "HIGH", "exploitabilityScore": 3.9, "impactScore": 10.0, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:nomachine:nx_node:3.0.0:*:*:*:*:*:*:*", "matchCriteriaId": "D523D046-6D8E-492E-8718-B5FE0031CB5E" }, { "vulnerable": true, "criteria": "cpe:2.3:a:nomachine:nx_node:3.4.0:*:*:*:*:*:*:*", "matchCriteriaId": "19AED5AC-7554-4D68-AB27-E4092D9A6FFA" }, { "vulnerable": true, "criteria": "cpe:2.3:a:nomachine:nx_node:3.5.0:*:*:*:*:*:*:*", "matchCriteriaId": "9FCF91A0-BD48-426E-BDDD-92C8D3705DDB" }, { "vulnerable": true, "criteria": "cpe:2.3:a:nomachine:nx_server:3.0.0:*:*:*:*:*:*:*", "matchCriteriaId": "D7E84AE4-84DE-4519-8505-81A776F81538" }, { "vulnerable": true, "criteria": "cpe:2.3:a:nomachine:nx_server:3.4.0:*:*:*:*:*:*:*", "matchCriteriaId": "A39F96EE-2CC4-49DC-9DD9-74971A93F57D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:nomachine:nx_server:3.5.0:*:*:*:*:*:*:*", "matchCriteriaId": "F4E09E25-7B0F-4C59-AC38-29ACD8A94780" } ] } ] } ], "references": [ { "url": "http://securityreason.com/securityalert/8406", "source": "cve@mitre.org" }, { "url": "http://www.nomachine.com/tr/view.php?id=TR08I02575", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/archive/1/519730/100/0/threaded", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/bid/49720", "source": "cve@mitre.org" }, { "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/69974", "source": "cve@mitre.org" } ] }