{"api_version":"1","generated_at":"2026-07-23T07:03:40+00:00","cve":"CVE-2012-5185","urls":{"html":"https://cve.report/CVE-2012-5185","api":"https://cve.report/api/cve/CVE-2012-5185.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2012-5185","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2012-5185"},"summary":{"title":"CVE-2012-5185","description":"Directory traversal vulnerability in the Olive Toast Documents Pro File Viewer (formerly Files HD) app before 1.11.1 for iOS allows remote attackers to read or delete files by leveraging guest access.","state":"PUBLISHED","assigner":"jpcert","published_at":"2013-01-19 20:55:00","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-22","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"https://itunes.apple.com/us/app/documents-pro/id374142847","name":"https://itunes.apple.com/us/app/documents-pro/id374142847","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"App Store - Documents Pro","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://jvndb.jvn.jp/jvndb/JVNDB-2013-000002","name":"http://jvndb.jvn.jp/jvndb/JVNDB-2013-000002","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://jvn.jp/en/jp/JVN52197991/index.html","name":"http://jvn.jp/en/jp/JVN52197991/index.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"JVN#52197991: Documents Pro (formerly Files HD) vulnerable to directory traversal","mime":"text/xml","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2012-5185","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2012-5185","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2012","cve_id":"5185","vulnerable":"1","versionEndIncluding":"1.11","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"olivetoast","cpe5":"documents_pro_file_viewer","cpe6":"*","cpe7":"-","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"iphone_os","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T20:58:03.324Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://itunes.apple.com/us/app/documents-pro/id374142847"},{"name":"JVNDB-2013-000002","tags":["third-party-advisory","x_refsource_JVNDB","x_transferred"],"url":"http://jvndb.jvn.jp/jvndb/JVNDB-2013-000002"},{"name":"JVN#52197991","tags":["third-party-advisory","x_refsource_JVN","x_transferred"],"url":"http://jvn.jp/en/jp/JVN52197991/index.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"descriptions":[{"lang":"en","value":"Directory traversal vulnerability in the Olive Toast Documents Pro File Viewer (formerly Files HD) app before 1.11.1 for iOS allows remote attackers to read or delete files by leveraging guest access."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2013-01-19T20:00:00.000Z","orgId":"ede6fdc4-6654-4307-a26d-3331c018e2ce","shortName":"jpcert"},"references":[{"tags":["x_refsource_MISC"],"url":"https://itunes.apple.com/us/app/documents-pro/id374142847"},{"name":"JVNDB-2013-000002","tags":["third-party-advisory","x_refsource_JVNDB"],"url":"http://jvndb.jvn.jp/jvndb/JVNDB-2013-000002"},{"name":"JVN#52197991","tags":["third-party-advisory","x_refsource_JVN"],"url":"http://jvn.jp/en/jp/JVN52197991/index.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"vultures@jpcert.or.jp","ID":"CVE-2012-5185","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Directory traversal vulnerability in the Olive Toast Documents Pro File Viewer (formerly Files HD) app before 1.11.1 for iOS allows remote attackers to read or delete files by leveraging guest access."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"https://itunes.apple.com/us/app/documents-pro/id374142847","refsource":"MISC","url":"https://itunes.apple.com/us/app/documents-pro/id374142847"},{"name":"JVNDB-2013-000002","refsource":"JVNDB","url":"http://jvndb.jvn.jp/jvndb/JVNDB-2013-000002"},{"name":"JVN#52197991","refsource":"JVN","url":"http://jvn.jp/en/jp/JVN52197991/index.html"}]}}}},"cveMetadata":{"assignerOrgId":"ede6fdc4-6654-4307-a26d-3331c018e2ce","assignerShortName":"jpcert","cveId":"CVE-2012-5185","datePublished":"2013-01-19T20:00:00.000Z","dateReserved":"2012-09-26T00:00:00.000Z","dateUpdated":"2024-09-16T19:51:00.566Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2013-01-19 20:55:00","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-22","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:olivetoast:documents_pro_file_viewer:*:-:*:*:*:iphone_os:*:*","versionEndIncluding":"1.11","matchCriteriaId":"9D5AAD60-9B08-4F16-B93C-273D61B999CA"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2012","CveId":"5185","Ordinal":"1","Title":"CVE-2012-5185","CVE":"CVE-2012-5185","Year":"2012"},"notes":[{"CveYear":"2012","CveId":"5185","Ordinal":"1","NoteData":"Directory traversal vulnerability in the Olive Toast Documents Pro File Viewer (formerly Files HD) app before 1.11.1 for iOS allows remote attackers to read or delete files by leveraging guest access.","Type":"Description","Title":"CVE-2012-5185"},{"CveYear":"2012","CveId":"5185","Ordinal":"2","NoteData":"2013-01-19","Type":"Other","Title":"Published"}]}}}