Multiple directory traversal vulnerabilities in the TFTP Server in Distinct Intranet Servers 3.10 and earlier allow remote attackers to read or write arbitrary files via a .. (dot dot) in the (1) get or (2) put commands.
History

Sun, 15 Sep 2024 21:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-200 CWE-22

Tue, 06 Aug 2024 22:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:tftp_server:district_intranet_servers:3.10:*:*:*:*:*:*:*
Vendors & Products Tftp Server
Tftp Server district Intranet Servers
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-06-21T00:00:00

Updated: 2024-09-15T19:39:03.375Z

Reserved: 2014-11-16T00:00:00

Link: CVE-2012-6664

cve-icon Vulnrichment

Updated: 2024-08-06T21:36:02.366Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-06-21T22:15:09.767

Modified: 2024-11-21T01:46:38.973

Link: CVE-2012-6664

cve-icon Redhat

No data.