Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2011-4715

Directory traversal vulnerability in cgi-bin/koha/mainpage.pl in Koha 3.4 before 3.4.7 and 3.6 before 3.6.1, and LibLime Koha 4.2 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the KohaOpacLanguage cookie to cgi-bin/opac/opac-main.pl, related to Output.pm.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.198
EPSS Ranking 95.2%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2011-4715
  • Koha » Koha » Version: 3.04.00
    cpe:2.3:a:koha:koha:3.04.00
  • Koha » Koha » Version: 3.04.01
    cpe:2.3:a:koha:koha:3.04.01
  • Koha » Koha » Version: 3.04.02
    cpe:2.3:a:koha:koha:3.04.02
  • Koha » Koha » Version: 3.04.03
    cpe:2.3:a:koha:koha:3.04.03
  • Koha » Koha » Version: 3.04.04
    cpe:2.3:a:koha:koha:3.04.04
  • Koha » Koha » Version: 3.04.05
    cpe:2.3:a:koha:koha:3.04.05
  • Koha » Koha » Version: 3.04.06
    cpe:2.3:a:koha:koha:3.04.06
  • Koha » Koha » Version: 3.06.00.000
    cpe:2.3:a:koha:koha:3.06.00.000
  • Koha » Liblime Koha » Version: Any
    cpe:2.3:a:koha:liblime_koha:*


Contact Us

Shodan ® - All rights reserved