← Back

CVE-2013-4885

nvd nist
Published: Oct 26, 2013Modified: Apr 29, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted FullName parameter in a response, as demonstrated using directory traversal sequences.

Affected (190)

Products: Nmap: Nmap · Opensuse: Opensuse
1 product
Nmap
1 product
Opensuse
Configuration A
189 vulnerable
Vulnerable SoftwareAffected Versions
Nmap
Up to 6.25
Version 2.05
Version 2.06
Version 2.07
Version 2.08
Version 2.09
Version 2.10
Version 2.11
Version 2.12
Version 2.1 beta1
Version 2.2 beta2
Version 2.2 beta3
Version 2.2 beta4
Version 2.3 beta10
Version 2.3 beta12
Version 2.3 beta13
Version 2.3 beta14
Version 2.3 beta17
Version 2.3 beta18
Version 2.3 beta19
Version 2.3 beta20
Version 2.3 beta21
Version 2.3 beta4
Version 2.3 beta5
Version 2.3 beta6
Version 2.3 beta8
Version 2.3 beta9
Version 2.50
Version 2.51
Version 2.52
Version 2.53
Version 2.54 beta16
Version 2.54 beta19
Version 2.54 beta1
Version 2.54 beta20
Version 2.54 beta21
Version 2.54 beta22
Version 2.54 beta24
Version 2.54 beta25
Version 2.54 beta26
Version 2.54 beta27
Version 2.54 beta28
Version 2.54 beta29
Version 2.54 beta2
Version 2.54 beta30
Version 2.54 beta31
Version 2.54 beta32
Version 2.54 beta33
Version 2.54 beta34
Version 2.54 beta35
Version 2.54 beta36
Version 2.54 beta37
Version 2.54 beta3
Version 2.54 beta4
Version 2.54 beta5
Version 2.54 beta6
Version 2.54 beta7
Version 2.99 rc1
Version 2.99 rc2
Version 3.00
Version 3.10 alpha1
Version 3.10 alpha2
Version 3.10 alpha3
Version 3.10 alpha4
Version 3.10 alpha5
Version 3.10 alpha7
Version 3.10 alpha9
Version 3.15 beta1
Version 3.15 beta2
Version 3.15 beta3
Version 3.20
Version 3.25
Version 3.26
Version 3.27
Version 3.28
Version 3.30
Version 3.40 pvt10
Version 3.40 pvt11
Version 3.40 pvt12
Version 3.40 pvt13
Version 3.40 pvt14
Version 3.40 pvt15
Version 3.40 pvt16
Version 3.40 pvt17
Version 3.40 pvt1
Version 3.40 pvt2
Version 3.40 pvt3
Version 3.40 pvt4
Version 3.40 pvt6
Version 3.40 pvt7
Version 3.40 pvt8
Version 3.40 pvt9
Version 3.45
Version 3.48
Version 3.50
Version 3.55
Version 3.70
Version 3.75
Version 3.81
Version 3.90
Version 3.91
Version 3.93
Version 3.94 alpha1
Version 3.94 alpha2
Version 3.94 alpha3
Version 3.95
Version 3.96 beta1
Version 3.98 beta1
Version 3.9999
Version 3.999
Version 3.99
Version 4.00
Version 4.01
Version 4.02 alpha1
Version 4.02 alpha2
Version 4.03
Version 4.04 beta1
Version 4.10
Version 4.11
Version 4.20
Version 4.20 alpha10
Version 4.20 alpha11
Version 4.20 alpha1
Version 4.20 alpha2
Version 4.20 alpha3
Version 4.20 alpha4
Version 4.20 alpha5
Version 4.20 alpha6
Version 4.20 alpha7
Version 4.20 alpha8
Version 4.20 alpha9
Version 4.20 rc1
Version 4.20 rc2
Version 4.21 alpha1
Version 4.21 alpha2
Version 4.21 alpha3
Version 4.21 alpha4
Version 4.22 soc1
Version 4.22 soc2
Version 4.22 soc3
Version 4.22 soc5
Version 4.22 soc6
Version 4.22 soc7
Version 4.22 soc8
Version 4.49 rc1
Version 4.49 rc2
Version 4.49 rc3
Version 4.49 rc4
Version 4.49 rc5
Version 4.49 rc6
Version 4.49 rc7
Version 4.50
Version 4.51 beta
Version 4.52
Version 4.53
Version 4.60
Version 4.62
Version 4.65
Version 4.68
Version 4.75
Version 4.76
Version 4.85 beta10
Version 4.85 beta1
Version 4.85 beta2
Version 4.85 beta3
Version 4.85 beta4
Version 4.85 beta5
Version 4.85 beta6
Version 4.85 beta7
Version 4.85 beta8
Version 4.85 beta9
Version 4.90 rc1
Version 5.00
Version 5.10 beta1
Version 5.10 beta2
Version 5.20
Version 5.21
Version 5.30 beta1
Version 5.35 dc1
Version 5.50
Version 5.51
Version 5.59 beta1
Version 5.61 test1
Version 5.61 test2
Version 5.61 test4
Version 5.61 test5
Version 6.00
Version 6.01
Version 6.20 beta1
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 12.3

References (12)

Timeline

No history available yet.