VulnerabilityModified
CVE-2009-3860
Multiple insecure method vulnerabilities in Idefense Labs COMRaider allow remote attackers to create or overwrite arbitrary files via the (1) CreateFolder and (2) Copy methods.
MEDIUM 5.8EPSS 1.83%
Does this matter?
Lower severity and a low EPSS score (1.83%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple insecure method vulnerabilities in Idefense Labs COMRaider allow remote attackers to create or overwrite arbitrary files via the (1) CreateFolder and (2) Copy methods. NOTE: this might only be a vulnerability in certain insecure configurations of Internet Explorer.
- CVSS 2.0
- 5.8 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:P
- EPSS
- 1.83% probability · 78th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- idefense/comraider
- Source
- cve@mitre.org
References
- http://www.juniper.net/security/auto/vulnerabilities/vuln35725.html
- http://www.securityfocus.com/archive/1/505042/100/0/threaded
- http://www.securityfocus.com/bid/35725Exploit
- http://www.juniper.net/security/auto/vulnerabilities/vuln35725.html
- http://www.securityfocus.com/archive/1/505042/100/0/threaded
- http://www.securityfocus.com/bid/35725Exploit
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.