Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-1000161

nmap version 6.49BETA6 through 7.60, up to and including SVN revision 37147 contains a Directory Traversal vulnerability in NSE script http-fetch that can result in file overwrite as the user is running it. This attack appears to be exploitable via a victim that runs NSE script http-fetch against a malicious web site. This vulnerability appears to have been fixed in 7.7.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.5%
CVSS Severity
CVSS v3 Score 5.7
CVSS v2 Score 3.5
Products affected by CVE-2018-1000161
  • Nmap » Nmap » Version: 6.49
    cpe:2.3:a:nmap:nmap:6.49
  • Nmap » Nmap » Version: 7.00
    cpe:2.3:a:nmap:nmap:7.00
  • Nmap » Nmap » Version: 7.01
    cpe:2.3:a:nmap:nmap:7.01
  • Nmap » Nmap » Version: 7.10
    cpe:2.3:a:nmap:nmap:7.10
  • Nmap » Nmap » Version: 7.11
    cpe:2.3:a:nmap:nmap:7.11
  • Nmap » Nmap » Version: 7.12
    cpe:2.3:a:nmap:nmap:7.12
  • Nmap » Nmap » Version: 7.25
    cpe:2.3:a:nmap:nmap:7.25
  • Nmap » Nmap » Version: 7.30
    cpe:2.3:a:nmap:nmap:7.30
  • Nmap » Nmap » Version: 7.31
    cpe:2.3:a:nmap:nmap:7.31
  • Nmap » Nmap » Version: 7.40
    cpe:2.3:a:nmap:nmap:7.40
  • Nmap » Nmap » Version: 7.50
    cpe:2.3:a:nmap:nmap:7.50
  • Nmap » Nmap » Version: 7.60
    cpe:2.3:a:nmap:nmap:7.60


Contact Us

Shodan ® - All rights reserved