PoC Index

CVE-2019-11013

MEDIUM 6.5EPSS 24.0%

Nimble Streamer 3.0.2-2 through 3.5.4-9 has a ../ directory traversal vulnerability. Successful exploitation could allow an attacker to traverse the file system to access files or directories that are outside of the restricted directory on the remote server.

CVSS v3.0
6.5 MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS v2.0
4.0 MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
EPSS
23.98% chance of exploitation in the next 30 days, 98th percentile
Nuclei
medium · CWE-22
Published
2019-08-22
Updated
2024-08-04

Proof-of-concept exploits (1)

Nuclei templates (1)

ExploitDB entries (1)

References

Related