mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 09:11:28 +00:00
112 lines
3.6 KiB
JSON
112 lines
3.6 KiB
JSON
{
|
|
"id": "CVE-2014-0805",
|
|
"sourceIdentifier": "vultures@jpcert.or.jp",
|
|
"published": "2014-01-12T18:34:56.547",
|
|
"lastModified": "2014-01-14T04:49:19.543",
|
|
"vulnStatus": "Analyzed",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Directory traversal vulnerability in the NeoFiler application 5.4.3 and earlier, NeoFiler Free application 5.4.3 and earlier, and NeoFiler Lite application 2.4.2 and earlier for Android allows attackers to overwrite or create arbitrary files via unspecified vectors."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Vulnerabilidad de recorrido de directorios en las aplicaciones para Android NeoFilter 5.4.3 y anteriores, NeoFiler Free 5.4.3 y anteriores, y NeoFiler Lite 2.4.2 y anteriores permite a atacantes remotos sobreescribir o crear archivos de forma arbitraria, a trav\u00e9s de vectores no especificados."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:P",
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "MEDIUM",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "PARTIAL",
|
|
"availabilityImpact": "PARTIAL",
|
|
"baseScore": 5.8
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 8.6,
|
|
"impactScore": 4.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-22"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:skyarts:neofiler:*:-:-:*:lite:android:*:*",
|
|
"versionEndIncluding": "2.4.2",
|
|
"matchCriteriaId": "387FE478-6084-4D2B-9706-753EDE3834EA"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:skyarts:neofiler:*:-:-:*:-:android:*:*",
|
|
"versionEndIncluding": "5.4.3",
|
|
"matchCriteriaId": "4C778A6A-05A3-47F4-8D0E-C34A1D5D8725"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:skyarts:neofiler:*:-:-:*:free:android:*:*",
|
|
"versionEndIncluding": "5.4.3",
|
|
"matchCriteriaId": "C3C1CC75-743F-485D-B8CA-315ED863F622"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://jvn.jp/en/jp/JVN85716574/index.html",
|
|
"source": "vultures@jpcert.or.jp"
|
|
},
|
|
{
|
|
"url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000004",
|
|
"source": "vultures@jpcert.or.jp"
|
|
},
|
|
{
|
|
"url": "http://www.skyarts.com/products/android/neofiler/index.html",
|
|
"source": "vultures@jpcert.or.jp"
|
|
},
|
|
{
|
|
"url": "https://play.google.com/store/apps/details?id=com.skyarts.android.neofiler",
|
|
"source": "vultures@jpcert.or.jp"
|
|
},
|
|
{
|
|
"url": "https://play.google.com/store/apps/details?id=com.skyarts.android.neofilerfree",
|
|
"source": "vultures@jpcert.or.jp"
|
|
},
|
|
{
|
|
"url": "https://play.google.com/store/apps/details?id=com.skyarts.android.neofilerlite",
|
|
"source": "vultures@jpcert.or.jp"
|
|
}
|
|
]
|
|
} |