Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2004-2493


Directory traversal vulnerability in Groupmax World Wide Web (GmaxWWW) 2 and 3, and Desktop 5, 6, and Desktop for Jichitai allows remote authenticated users to read arbitrary .html files via the template name parameter.


Published

2004-12-31T05:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.0 (MEDIUM)

CVSSv2 Vector

AV:N/AC:L/Au:S/C:P/I:N/A:N

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: SINGLE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

8.0

Impact Score

2.9

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application hitachi groupmax_world_wide_web 2 Yes
Application hitachi groupmax_world_wide_web 02_00 Yes
Application hitachi groupmax_world_wide_web 02_20 Yes
Application hitachi groupmax_world_wide_web 02_20_a Yes
Application hitachi groupmax_world_wide_web 02_31_i Yes
Application hitachi groupmax_world_wide_web 3 Yes
Application hitachi groupmax_world_wide_web 03_00 Yes
Application hitachi groupmax_world_wide_web 03_10_h Yes
Application hitachi groupmax_world_wide_web 03_11_b Yes
Application hitachi groupmax_world_wide_web_desktop 5 Yes
Application hitachi groupmax_world_wide_web_desktop 05_00 Yes
Application hitachi groupmax_world_wide_web_desktop 05_11_f Yes
Application hitachi groupmax_world_wide_web_desktop 05_11_i Yes
Application hitachi groupmax_world_wide_web_desktop 05_11_j Yes
Application hitachi groupmax_world_wide_web_desktop 6 Yes
Application hitachi groupmax_world_wide_web_desktop 06_00 Yes
Application hitachi groupmax_world_wide_web_desktop 06_50_b Yes
Application hitachi groupmax_world_wide_web_desktop 06_50_c Yes
Application hitachi groupmax_world_wide_web_desktop 06_51 Yes
Application hitachi groupmax_world_wide_web_desktop 06_51 Yes
Application hitachi groupmax_world_wide_web_desktop 06_51_b Yes
Application hitachi groupmax_world_wide_web_desktop 06_51_c Yes
Application hitachi groupmax_world_wide_web_desktop 06_52 Yes
Application hitachi groupmax_world_wide_web_desktop 06_52 Yes
Application hitachi groupmax_world_wide_web_desktop 06_52_b Yes
Application hitachi groupmax_world_wide_web_desktop gold Yes

References