mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 17:21:36 +00:00
139 lines
4.8 KiB
JSON
139 lines
4.8 KiB
JSON
{
|
|
"id": "CVE-2010-0384",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2010-01-25T19:30:01.667",
|
|
"lastModified": "2024-11-21T01:12:06.290",
|
|
"vulnStatus": "Modified",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Tor 0.2.2.x before 0.2.2.7-alpha, when functioning as a directory mirror, does not prevent logging of the client IP address upon detection of erroneous client behavior, which might make it easier for local users to discover the identities of clients in opportunistic circumstances by reading log files."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Tor v0.2.2.x anterior a v0.2.2.7-alpha, cuando est\u00e1 funcionando como espejo de directorio, no previene el acceso a la direcci\u00f3n IP cliente al detectar un comportamiento err\u00f3neo del cliente, lo que podr\u00eda facilitar a usuarios locales descubrir las identidades de los clientes en circunstancias favorables, leyendo sus ficheros de registro."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:L/AC:L/Au:N/C:P/I:N/A:N",
|
|
"baseScore": 2.1,
|
|
"accessVector": "LOCAL",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "PARTIAL",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "NONE"
|
|
},
|
|
"baseSeverity": "LOW",
|
|
"exploitabilityScore": 3.9,
|
|
"impactScore": 2.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-200"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "155BFC2E-F388-4AD7-A5BC-3531FC81948F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.1:alpha:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EF240A26-E071-4C64-B0E7-6E5F7D9BD964"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7C1908AB-04C3-4F96-B681-9B661C122063"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.2:alpha:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EF856938-A172-4BA9-86BF-7C7F3F8E382C"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B0FFFC75-CECB-4609-B5C2-153192FE9399"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.3:alpha:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5ECBB2B5-5F2A-4A89-9A72-DB47B5331AB5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D8B64406-ECC9-445A-9550-E1B8124BF85E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.4:alpha:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F7A37134-5162-4E48-BE5C-93807F4CD055"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9C7F42FD-A98D-40F9-AE5D-CA5DE2FB575B"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.5:alpha:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4CECAD72-6E99-400D-82A8-3792E88C65F5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "47FD7FC5-30C3-48D7-8A95-7F923EA25457"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:tor:tor:0.2.2.6:alpha:*:*:*:*:*:*",
|
|
"matchCriteriaId": "38665A22-85F6-4F7E-A73B-CBB82828F63D"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://archives.seul.org/or/talk/Jan-2010/msg00162.html",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://archives.seul.org/or/talk/Jan-2010/msg00162.html",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
}
|
|
]
|
|
} |