René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

87 lines
2.6 KiB
JSON

{
"id": "CVE-2008-7111",
"sourceIdentifier": "cve@mitre.org",
"published": "2009-08-28T15:30:00.327",
"lastModified": "2018-10-11T20:58:20.427",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "The Scanner File Utility (aka listener) in Kyocera Mita (KM) 3.3.0.1 does not restrict the filenames or extensions of uploaded files, which makes it easier for remote attackers to execute arbitrary code or overwrite files by leveraging CVE-2008-7110 and CVE-2008-7109."
},
{
"lang": "es",
"value": "La utilidad del archivo de esc\u00e1ner (tambi\u00e9n conocido como listener) en Kyocera Mita (KM) v3.3.0.1 no restringe los nombres de archivo o extensiones de los archivos subidos, lo que permite ejecutar c\u00f3digo arbitrario a los atacantes remotos o sobrescribir archivos aprovechando CVE-2008-7110 y CVE-2008-7109."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 9.3
},
"baseSeverity": "HIGH",
"exploitabilityScore": 8.6,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-264"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:kyoceramita:scanner_file_utility:3.3.0.1:*:*:*:*:*:*:*",
"matchCriteriaId": "B9F14BBB-2781-438F-9C56-EE7006676E81"
}
]
}
]
}
],
"references": [
{
"url": "http://www.informit.com/guides/content.aspx?g=security&seqNum=320",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/495772/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/53003",
"source": "cve@mitre.org"
}
]
}