HIGH
ContentKeeper Web Appliance < 125.10 Arbitrary File Access via mimencode
Published Aug 20, 2025
8.7
HIGHCVSS 4.0
EPSS 0.78%
Description
ContentKeeper Web Appliance (now maintained by Impero Software) versions prior to 125.10 expose the mimencode binary via a CGI endpoint, allowing unauthenticated attackers to retrieve arbitrary files from the filesystem. By crafting a POST request to /cgi-bin/ck/mimencode with traversal and output parameters, attackers can read sensitive files such as /etc/passwd outside the webroot.
Affected products
-
- Version 0StatusaffectedConstraints<125.10
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| ContentKeeper Technologies | Web Appliance | unaffected |
|
No data.
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (6)
- http://www.aushack.com/200904-contentkeeper.txt technical-description
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2009-5116 Advisory
- https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/auxiliary/admin/http/contentkeeper_fileaccess.rb exploit
- https://web.archive.org/web/20100325220542/http://www.contentkeeper.com/ product
- https://www.exploit-db.com/exploits/16923 exploit
- https://www.vulncheck.com/advisories/contentkeeper-web-appliance-arbitrary-file-access-via-mimencode third-party-advisory
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulnCheck
Published Aug 20, 2025
Updated Jul 15, 2026
Reserved Aug 18, 2025
Link CVE-2009-10005
CISA Vulnrichment
Updated Aug 20, 2025
ENISA EUVD
EUVD-2009-5116 Assigner VulnCheck
Published Aug 20, 2025
Updated Jul 15, 2026
Exploited since n/a
Link EUVD-2009-5116