Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2015-1589

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2015-1589
Last Modified 24 Feb 2015 12:14:13
Published 23 Feb 2015 12:59:02
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2015-1589

Summary

Directory traversal vulnerability in arCHMage 0.2.4 allows remote attackers to write to arbitrary files via a .. (dot dot) in a CHM file.

Vulnerable Systems

Application

  • Archmage Project Archmage 0.2.4


References

CONFIRM - https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=776164

XF - archmage-cve20151589-dir-trav(100879)

MLIST - [oss-security] 20150212 CVE request: archmage directory traversal

MLIST - [oss-security] 20150212 Re: CVE request: archmage directory traversal


Last Updated: 27 May 2016 11:07:54