{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-17T14:34:45.029","vulnerabilities":[{"cve":{"id":"CVE-2012-5972","sourceIdentifier":"ics-cert@hq.dhs.gov","published":"2013-01-17T16:55:02.237","lastModified":"2025-07-07T20:15:26.170","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in the web server in SpecView 2.5 build 853 and earlier allows remote attackers to read arbitrary files via a ... (dot dot dot) in a URI."},{"lang":"es","value":"Vulnerabilidad de salto de directorio en el servidor web en SpecView v2.5 build 853 y anteriores permite a atacantes remotos leer archivos de su elección a través de un ... (Dot dot dot) en una URI."}],"metrics":{"cvssMetricV2":[{"source":"ics-cert@hq.dhs.gov","type":"Secondary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:P/I:N/A:N","baseScore":2.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":4.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10.0,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"ics-cert@hq.dhs.gov","type":"Secondary","description":[{"lang":"en","value":"CWE-23"}]},{"source":"nvd@nist.gov","type":"Secondary","description":[{"lang":"en","value":"CWE-22"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:specview:specview:*:*:*:*:*:*:*:*","versionEndIncluding":"2.5","matchCriteriaId":"9F754255-4F18-4A86-A430-92EBB188835F"}]}]}],"references":[{"url":"http://aluigi.altervista.org/adv/specview_1-adv.txt","source":"ics-cert@hq.dhs.gov","tags":["Exploit"]},{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-13-011-02","source":"ics-cert@hq.dhs.gov"},{"url":"http://aluigi.altervista.org/adv/specview_1-adv.txt","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"]},{"url":"http://www.us-cert.gov/control_systems/pdf/ICSA-13-011-02.pdf","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"]}]}}]}