← back
CVE-2012-6664

CVE-2012-6664

CVSS 9.1 CRITICALEPSS 29.5%CWE-22
Vexday Risk Score
68High priority
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS 9.1EPSS 29.5%KEV nãoPoC públicaNuclei Metasploit simPatch
Lifecycle
08 Apr 2012Metasploit module available
21 Jun 2024Published on NVD
Recommendation: Plan a near-term fix — a public PoC already exists.
Multiple directory traversal vulnerabilities in the TFTP Server in Distinct Intranet Servers 3.10 and earlier allow remote attackers to read or write arbitrary files via a .. (dot dot) in the (1) get or (2) put commands.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →