René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

87 lines
2.5 KiB
JSON

{
"id": "CVE-2009-1730",
"sourceIdentifier": "cve@mitre.org",
"published": "2009-05-20T18:30:00.377",
"lastModified": "2017-08-17T01:30:28.770",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Multiple directory traversal vulnerabilities in NetMechanica NetDecision TFTP Server 4.2 allow remote attackers to read or modify arbitrary files via directory traversal sequences in the (1) GET or (2) PUT command."
},
{
"lang": "es",
"value": "M\u00faltiples vulnerabilidades de salto de directorio en NetMechanica NetDecision TFTP Server v4.2, permite a los atacantes remotos leer o modificar arbitrariamente archivos a trav\u00e9s de una secuencia de salto de directorio en el comandos (1) GET o (2) PUT"
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 10.0
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-22"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:netmechanica:netdecision_tftp_server:4.2:*:*:*:*:*:*:*",
"matchCriteriaId": "78134BCD-15B2-42AF-8629-F684465915A9"
}
]
}
]
}
],
"references": [
{
"url": "http://www.princeofnigeria.org/blogs/index.php/2009/05/17/netdecision-tftp-server-4-2-tftp-directo?blog=1",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/35002",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/50574",
"source": "cve@mitre.org"
}
]
}