5
CVSSv2

CVE-2012-1466

Published: 19/03/2012 Updated: 29/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Traffic Grapher Server for NetMechanica NetDecision prior to 4.6.1 allows remote malicious users to obtain the source code of NtDecision script files with a .nd extension via an invalid version number in an HTTP request, as demonstrated using default.nd. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

netmechanica netdecision

Exploits

############################################################################## # # Title : Netmechanica NetDecision Traffic Grapher Server Information # Disclosure Vulnerability # Author : Prabhu S Angadi SecPod Technologies (wwwsecpodcom) # Vendor : wwwnetmechanicacom # Advisory : secpodorg/blog/?p=481 # ...