CVE-2011-4696
Published Mar 3, 2014
Last updated 7 years ago
Overview
- Description
- Directory traversal vulnerability in Eye-Fi Helper before 3.4.23 allows man-in-the-middle attackers to create arbitrary files via a .. (dot dot) in the filesignature in a GetPhotoStatus request.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 4.9
- Exploitability score
- 5.5
- Vector string
- AV:A/AC:M/Au:N/C:N/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-22
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:eye:eye-fi_helper:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4913E226-F4ED-4CD6-B390-690E3D6E51C9", "versionEndIncluding": "3.3.0" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.0.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D2F6EA65-F98C-4847-8913-0592974BFE2D" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.0.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A832B2D-76B4-46B6-885A-2D45C471B9A4" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.5.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A8F70958-4997-4273-BB0C-FB51137499DA" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.5.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65295CA2-76C1-4829-97D9-87DAD6DBF842" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.5.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4604687D-07C3-49D7-93AB-8FE2CF69821A" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.5.26.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1D5A73E6-8F61-4466-ABFA-F4077A734B82" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.5.27.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C49BD4B-24FE-4CC3-9BC4-FE555D7A313A" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.6.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0FF327E6-7871-464B-8230-E0F216078304" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.6.9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3706F497-A77C-4530-960B-13E87F144C1C" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:2.6.12.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "31B9D5D6-5D73-41CB-B646-2CE457B23615" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:3.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "404D5CBC-7072-41C8-930A-9B51DEF168EF" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:3.1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D4EA465-2CC9-4827-8307-A46EFDBB422F" }, { "criteria": "cpe:2.3:a:eye:eye-fi_helper:3.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E476C4C-6A8D-4AC2-A415-475F41940A28" } ], "operator": "OR" } ] } ]