2024-12-08 03:06:42 +00:00

98 lines
2.7 KiB
JSON

{
"id": "CVE-2009-0514",
"sourceIdentifier": "cve@mitre.org",
"published": "2009-02-11T00:30:02.953",
"lastModified": "2024-11-21T01:00:06.427",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Multiple directory traversal vulnerabilities in WebFrame 0.76 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) currentmod and (2) LANG parameters to mod/index.php."
},
{
"lang": "es",
"value": "M\u00faltiples vulnerabilidades de salto de directorio en WebFrame v0.76 permite a atacantes remotos incluir y ejecutar ficheros locales a trav\u00e9s de secuencias de salto de directorio en los parametros (1) \"currentmod\" y (2) \"LANG\" en mod/index.php."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
"baseScore": 7.5,
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL"
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": true,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-22"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:webframe:webframe:0.76:*:*:*:*:*:*:*",
"matchCriteriaId": "B5C39BEE-3BAF-44EB-BE3A-679CAAD8A461"
}
]
}
]
}
],
"references": [
{
"url": "http://www.securityfocus.com/bid/33701",
"source": "cve@mitre.org",
"tags": [
"Exploit"
]
},
{
"url": "https://www.exploit-db.com/exploits/8025",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/33701",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Exploit"
]
},
{
"url": "https://www.exploit-db.com/exploits/8025",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}