VulnerabilityModified
CVE-2005-1301
nProtect:Netizen 2005.3.17.1 does not properly verify that the update module is downloaded from an authorized site, which allows remote malicious web sites to write arbitrary files.
LOW 2.6EPSS 1.02%
Does this matter?
Lower severity and a low EPSS score (1.02%). Track it; it rarely justifies an emergency change on its own.
Description
nProtect:Netizen 2005.3.17.1 does not properly verify that the update module is downloaded from an authorized site, which allows remote malicious web sites to write arbitrary files.
- CVSS 2.0
- 2.6 LOWAV:N/AC:H/Au:N/C:N/I:P/A:N
- EPSS
- 1.02% probability · 61th percentile
- CISA KEV
- Not listed
- Affected
- nprotect/netizen
- Source
- cve@mitre.org
References
- http://jvn.jp/jp/JVN%23AF02FB4B/index.html
- http://marc.info/?l=bugtraq&m=111444390329376&w=2
- http://secunia.com/advisories/15101
- http://www.lac.co.jp/business/sns/intelligence/SNSadvisory_e/80_e.htmlPatch
- http://www.osvdb.org/15788
- http://jvn.jp/jp/JVN%23AF02FB4B/index.html
- http://marc.info/?l=bugtraq&m=111444390329376&w=2
- http://secunia.com/advisories/15101
- http://www.lac.co.jp/business/sns/intelligence/SNSadvisory_e/80_e.htmlPatch
- http://www.osvdb.org/15788
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.