CVE-2005-4421
Published Dec 20, 2005
Last updated 7 years ago
Overview
- Description
- Dev-Editor 3.0 allows remote attackers to access any directory outside the web root whose name is a substring of the web root directory name.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:dev-editor:dev-editor:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "05E2CA25-80F7-43B8-8E80-B56020EEAD73" }, { "criteria": "cpe:2.3:a:dev-editor:dev-editor:2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "28535FDA-8439-442B-B1FC-35F3A4318874" }, { "criteria": "cpe:2.3:a:dev-editor:dev-editor:2.1a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4BF98D2B-9CBC-4BA2-8FA8-C984CCBEEB19" }, { "criteria": "cpe:2.3:a:dev-editor:dev-editor:2.2a:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D2887E1-DD09-4161-B372-469099CA69E0" }, { "criteria": "cpe:2.3:a:dev-editor:dev-editor:2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36A655A5-C5D3-4F0E-9852-D7580FD6EC1A" }, { "criteria": "cpe:2.3:a:dev-editor:dev-editor:2.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B477DCCE-87A9-4F5C-9F8D-9A6C89022EC7" }, { "criteria": "cpe:2.3:a:dev-editor:dev-editor:2.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5D5E7561-CE2F-4B11-A7E4-66B5EE27E318" }, { "criteria": "cpe:2.3:a:dev-editor:dev-editor:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6C98097B-6FA6-48A2-A7B2-8EC99393AC83" } ], "operator": "OR" } ] } ]