{"api_version":"1","generated_at":"2026-07-23T07:03:16+00:00","cve":"CVE-2011-0329","urls":{"html":"https://cve.report/CVE-2011-0329","api":"https://cve.report/api/cve/CVE-2011-0329.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2011-0329","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2011-0329"},"summary":{"title":"CVE-2011-0329","description":"Directory traversal vulnerability in the GetData method in the Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 allows remote attackers to read arbitrary files via directory traversal sequences in the fileID parameter.","state":"PUBLISHED","assigner":"flexera","published_at":"2011-02-21 18:00:01","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-22","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:N/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securityfocus.com/bid/46443","name":"http://www.securityfocus.com/bid/46443","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Dell DellSystemLite.Scanner ActiveX Control Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.securitytracker.com/id?1025094","name":"http://www.securitytracker.com/id?1025094","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Dell ActiveX Control Lets Remote Users View Files and Obtain System Informations - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/secunia_research/2011-10/","name":"http://secunia.com/secunia_research/2011-10/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Secunia - The Leading Provider of Vulnerability Management and Vulnerability Intelligence Solutions","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/42880","name":"http://secunia.com/advisories/42880","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Dell DellSystemLite.Scanner ActiveX Control Two Vulnerabilities - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2011-0329","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2011-0329","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2011","cve_id":"329","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"dell","cpe5":"dellsystemlite.scanner_activex_control","cpe6":"1.0.0.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T21:51:07.676Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://secunia.com/secunia_research/2011-10/"},{"name":"46443","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/46443"},{"name":"42880","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/42880"},{"name":"1025094","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1025094"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2011-02-18T00:00:00.000Z","descriptions":[{"lang":"en","value":"Directory traversal vulnerability in the GetData method in the Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 allows remote attackers to read arbitrary files via directory traversal sequences in the fileID parameter."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2011-03-18T09:00:00.000Z","orgId":"44d08088-2bea-4760-83a6-1e9be26b15ab","shortName":"flexera"},"references":[{"tags":["x_refsource_MISC"],"url":"http://secunia.com/secunia_research/2011-10/"},{"name":"46443","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/46443"},{"name":"42880","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/42880"},{"name":"1025094","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1025094"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"PSIRT-CNA@flexerasoftware.com","ID":"CVE-2011-0329","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Directory traversal vulnerability in the GetData method in the Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 allows remote attackers to read arbitrary files via directory traversal sequences in the fileID parameter."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://secunia.com/secunia_research/2011-10/","refsource":"MISC","url":"http://secunia.com/secunia_research/2011-10/"},{"name":"46443","refsource":"BID","url":"http://www.securityfocus.com/bid/46443"},{"name":"42880","refsource":"SECUNIA","url":"http://secunia.com/advisories/42880"},{"name":"1025094","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1025094"}]}}}},"cveMetadata":{"assignerOrgId":"44d08088-2bea-4760-83a6-1e9be26b15ab","assignerShortName":"flexera","cveId":"CVE-2011-0329","datePublished":"2011-02-21T17:00:00.000Z","dateReserved":"2011-01-06T00:00:00.000Z","dateUpdated":"2024-08-06T21:51:07.676Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-02-21 18:00:01","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-22","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:N/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:dell:dellsystemlite.scanner_activex_control:1.0.0.0:*:*:*:*:*:*:*","matchCriteriaId":"C951A2C5-1442-4BC7-9555-D1E61D8A8FE7"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2011","CveId":"329","Ordinal":"1","Title":"CVE-2011-0329","CVE":"CVE-2011-0329","Year":"2011"},"notes":[{"CveYear":"2011","CveId":"329","Ordinal":"1","NoteData":"Directory traversal vulnerability in the GetData method in the Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 allows remote attackers to read arbitrary files via directory traversal sequences in the fileID parameter.","Type":"Description","Title":"CVE-2011-0329"},{"CveYear":"2011","CveId":"329","Ordinal":"2","NoteData":"2011-02-21","Type":"Other","Title":"Published"},{"CveYear":"2011","CveId":"329","Ordinal":"3","NoteData":"2011-03-18","Type":"Other","Title":"Modified"}]}}}