René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

83 lines
2.5 KiB
JSON

{
"id": "CVE-2011-0329",
"sourceIdentifier": "PSIRT-CNA@flexerasoftware.com",
"published": "2011-02-21T18:00:01.160",
"lastModified": "2011-03-18T02:56:44.507",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Directory traversal vulnerability in the GetData method in the Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 allows remote attackers to read arbitrary files via directory traversal sequences in the fileID parameter."
},
{
"lang": "es",
"value": "Vulnerabilidad de salto de directorio en el m\u00e9todo GetData en Dell DellSystemLite.Scanner ActiveX en DellSystemLite.ocx v1.0.0.0, cuando est\u00e1 habilitado register_globals, permite a atacantes remotos leer ficheros locales de su elecci\u00f3n al utilizar caracteres .. (punto punto) en el par\u00e1metro fileID.\r\n"
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE",
"baseScore": 5.0
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-22"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:dell:dellsystemlite.scanner_activex_control:1.0.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "C951A2C5-1442-4BC7-9555-D1E61D8A8FE7"
}
]
}
]
}
],
"references": [
{
"url": "http://www.securityfocus.com/bid/46443",
"source": "PSIRT-CNA@flexerasoftware.com"
},
{
"url": "http://www.securitytracker.com/id?1025094",
"source": "PSIRT-CNA@flexerasoftware.com"
}
]
}