CVE-2015-10043
abreen Apollo path traversal
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability, which was classified as critical, was found in abreen Apollo. This affects an unknown part. The manipulation of the argument file leads to path traversal. The patch is named 6206406630780bbd074aff34f4683fb764faba71. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-218307.
Una vulnerabilidad fue encontrada en abreen Apollo y clasificada como crítica. Esto afecta a una parte desconocida. La manipulación del archivo de argumentos conduce a path traversal. El parche se llama 6206406630780bbd074aff34f4683fb764faba71. Se recomienda aplicar un parche para solucionar este problema. El identificador asociado de esta vulnerabilidad es VDB-218307.
Es wurde eine kritische Schwachstelle in abreen Apollo gefunden. Es geht dabei um eine nicht klar definierte Funktion. Dank Manipulation des Arguments file mit unbekannten Daten kann eine path traversal-Schwachstelle ausgenutzt werden. Der Patch wird als 6206406630780bbd074aff34f4683fb764faba71 bezeichnet. Als bestmögliche Massnahme wird Patching empfohlen.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2023-01-13 CVE Reserved
- 2023-01-14 CVE Published
- 2024-08-06 CVE Updated
- 2024-09-04 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://vuldb.com/?id.218307 | Technical Description |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://github.com/abreen/Apollo/commit/6206406630780bbd074aff34f4683fb764faba71 | 2024-05-17 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apollo Project Search vendor "Apollo Project" | Apollo Search vendor "Apollo Project" for product "Apollo" | < 2015-01-29 Search vendor "Apollo Project" for product "Apollo" and version " < 2015-01-29" | - |
Affected
|