{ "id": "CVE-2010-0350", "sourceIdentifier": "cve@mitre.org", "published": "2010-01-15T20:30:00.420", "lastModified": "2011-05-02T04:00:00.000", "vulnStatus": "Analyzed", "descriptions": [ { "lang": "en", "value": "Directory traversal vulnerability in the Photo Book (goof_fotoboek) extension 1.7.14 and earlier for TYPO3 has unknown impact and remote attack vectors." }, { "lang": "es", "value": "Vulnerabilidad de salto de directorio en la extensi\u00f3n de TYPO3 \"Photo Book\" (goof_fotoboek) v1.7.14 y anteriores para tiene un impacto desconocido y vectores de ataque remoto." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "PARTIAL", "baseScore": 7.5 }, "baseSeverity": "HIGH", "exploitabilityScore": 10.0, "impactScore": 6.4, "acInsufInfo": true, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-22" } ] } ], "configurations": [ { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:*:*:*:*:*:*:*:*", "versionEndIncluding": "1.7.14", "matchCriteriaId": "9A47C368-E00E-464F-AD09-C78E1C68DFE5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.2.4:*:*:*:*:*:*:*", "matchCriteriaId": "90813014-0C2D-4684-8DD5-DCF6EABF56C4" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.4.0:*:*:*:*:*:*:*", "matchCriteriaId": "6EF5E2E2-7536-4817-A4F0-BF097DE8BB26" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.4.1:*:*:*:*:*:*:*", "matchCriteriaId": "2A139CD8-8A86-463F-985E-CFB3E8296816" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.5.1:*:*:*:*:*:*:*", "matchCriteriaId": "D8D79A0A-F058-488C-8A97-2DAD81851E8F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.6.1:*:*:*:*:*:*:*", "matchCriteriaId": "FCB475A0-B3C9-4441-B5AC-C75BE5C270CE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.6.4:*:*:*:*:*:*:*", "matchCriteriaId": "4853F371-CE1A-4E07-B40B-8794598A49D5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.0:*:*:*:*:*:*:*", "matchCriteriaId": "74AF0E60-9110-4C33-96C8-165FBDBBF148" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.2:*:*:*:*:*:*:*", "matchCriteriaId": "73CF7DA3-E958-4CF2-899F-C45105FF176A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.3:*:*:*:*:*:*:*", "matchCriteriaId": "1BDDC390-A52D-482A-BAF6-6939B5790EB6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.4:*:*:*:*:*:*:*", "matchCriteriaId": "8952311C-CD9B-4ABA-9EB2-85FEFD89C7C7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.5:*:*:*:*:*:*:*", "matchCriteriaId": "5E0751AC-C16A-465F-ABCA-67E8A939B205" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.7:*:*:*:*:*:*:*", "matchCriteriaId": "BD9DAACA-EFFB-4E05-BD6D-E25D0DDCE7C9" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.9:*:*:*:*:*:*:*", "matchCriteriaId": "37B967B9-7317-42A6-B4BE-D8CE2A6C0D01" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.10:*:*:*:*:*:*:*", "matchCriteriaId": "3E0FEEA5-D282-4998-A72C-BFBA4A1AC4E6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.11:*:*:*:*:*:*:*", "matchCriteriaId": "C97A77B1-CF81-4DFD-A9D4-30BCCF5E5145" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.12:*:*:*:*:*:*:*", "matchCriteriaId": "FAE7BBDD-E459-4410-A47C-22BEE3C5ACD6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:arco_van_geest:goof_fotoboek:1.7.13:*:*:*:*:*:*:*", "matchCriteriaId": "F4C95FF1-67DE-40FD-9FD2-789DE7C0727C" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:a:typo3:typo3:*:*:*:*:*:*:*:*", "matchCriteriaId": "5F1C59B0-CDF2-4F9A-88C7-61E8F18590DB" } ] } ] } ], "references": [ { "url": "http://typo3.org/extensions/repository/view/goof_fotoboek/1.7.15/", "source": "cve@mitre.org" }, { "url": "http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/", "source": "cve@mitre.org", "tags": [ "Vendor Advisory" ] } ] }