PT-2015-4176 · Speed · Speed Root Explorer+1

Ryohei Koike

·

Publicado

2015-02-24

·

Atualizado

2015-02-25

·

CVE-2014-9282

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Speed Root Explorer versions prior to 3.2 Speed Explorer versions prior to 2.2
Description The issue allows remote attackers to write to arbitrary files via a crafted filename, potentially leading to unauthorized data modification.
Recommendations For Speed Root Explorer versions prior to 3.2, update to version 3.2 or later. For Speed Explorer versions prior to 2.2, update to version 2.2 or later.

Correção

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-9282

Produtos afetados

Speed Explorer
Speed Root Explorer