Back
CVE-2005-1090
Directory traversal vulnerability in the readFile and writeFile API for Maxthon 1.2.0 and 1.2.1 allows remote attackers to read or write arbitrary files.
Published: May 2, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (2)
| Vendor | Product | Version |
|---|---|---|
| maxthon | maxthon | 1.2.0 |
| maxthon | maxthon | 1.2.1 |
GitHub Security Advisory GHSA-q5pj-x273-rmw7
Directory traversal vulnerability in the readFile and writeFile API for Maxthon 1.2.0 and 1.2.1...
References (10)
- http://secunia.com/advisories/14918 Patch, Vendor Advisory
- http://www.osvdb.org/15423
- http://www.raffon.net/advisories/maxthon/multvulns.html Exploit, Vendor Advisory
- http://www.securityfocus.com/bid/13074 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20033
- http://secunia.com/advisories/14918 Patch, Vendor Advisory
- http://www.osvdb.org/15423
- http://www.raffon.net/advisories/maxthon/multvulns.html Exploit, Vendor Advisory
- http://www.securityfocus.com/bid/13074 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20033
Risk Scores
CVSS Score
6.4 / 10
EPSS Score
1.90%
Top 22% most likely to be exploited
Threat Score
26.2 / 100
Data Sources
NVD
EPSS
GitHub