peter bassill · operator
$ cve CVE-2011-5127 JSON

CVE-2011-5127 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 13.2% (pctl 96)

Patch early

A public exploit exists.

Description

Directory traversal vulnerability in Blue Coat Reporter 9.x before 9.2.4.13, 9.2.5.x before 9.2.5.1, and 9.3 before 9.3.1.2 on Windows allows remote attackers to read arbitrary files, and consequently execute arbitrary code, via an unspecified HTTP request.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS13.16% — more likely to be exploited than 96% of all CVEs
WeaknessCWE-22
On CISA KEVno
Public exploityes
Published2012-08-26
Last modified2026-06-16

Affected (2)

VendorProduct
bluecoatreporter
microsoftwindows

Public exploits

SourceTitleDate
exploit-dbBlue Coat Reporter - Directory Traversal2011-09-22

References

→ the Explorer  ·  watch your stack  ·  NVD