2024-12-08 03:06:42 +00:00

101 lines
2.9 KiB
JSON

{
"id": "CVE-2004-0066",
"sourceIdentifier": "cve@mitre.org",
"published": "2004-02-17T05:00:00.000",
"lastModified": "2024-11-20T23:47:41.113",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "phpGedView before 2.65 allows remote attackers to obtain the absolute path of the web server via malformed parameters to (1) indilist.php, (2) famlist.php, (3) placelist.php, (4) imageview.php, (5) timeline.php, (6) clippings.php, (7) login.php, and (8) gdbi.php."
},
{
"lang": "es",
"value": "phpGedView anteriores a 2.65 permiten a atacantes remotos obtener la ruta absoluta del servidor web mediante par\u00e1metros malformados para (1) indilist.php, (2) famlist.php, (3) placelist.php, (4) imageview.php, (5) timeline.php, (6) clippings.php, (7) login.php, y (8) gdbi.php."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"baseScore": 5.0,
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "NONE",
"availabilityImpact": "NONE"
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:phpgedview:phpgedview:*:*:*:*:*:*:*:*",
"versionEndIncluding": "2.65",
"matchCriteriaId": "C05501C0-BAF9-483E-A9CF-5F46D14E88FA"
}
]
}
]
}
],
"references": [
{
"url": "http://marc.info/?l=bugtraq&m=107394912715478&w=2",
"source": "cve@mitre.org"
},
{
"url": "http://www.osvdb.org/3464",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/14215",
"source": "cve@mitre.org"
},
{
"url": "http://marc.info/?l=bugtraq&m=107394912715478&w=2",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.osvdb.org/3464",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/14215",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}