{"id":"CVE-2009-10005","title":"ContentKeeper Web Appliance (now maintained by Impero Software) versions prior to 125.10 expose the mimencode binary via a CGI endpoint, allowing unauthenticated attackers to retrieve arbitrary files from the filesystem","summary":"ContentKeeper Web Appliance (now maintained by Impero Software) versions prior to 125.10 expose the mimencode binary via a CGI endpoint, allowing unauthenticated attackers to retrieve arbitrary files from the filesystem. By crafting a PO…","severity":"none","cwe":["CWE-552"],"published":"2025-08-20","updated":"2026-10-01","sourceUpdated":"2026-10-01T23:10:00.233","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2009-10005","references":[{"url":"http://www.aushack.com/200904-contentkeeper.txt","label":"disclosure@vulncheck.com"},{"url":"https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/auxiliary/admin/http/contentkeeper_fileaccess.rb","label":"disclosure@vulncheck.com"},{"url":"https://web.archive.org/web/20100325220542/http://www.contentkeeper.com/","label":"disclosure@vulncheck.com"},{"url":"https://www.exploit-db.com/exploits/16923","label":"disclosure@vulncheck.com"},{"url":"https://www.vulncheck.com/advisories/contentkeeper-web-appliance-arbitrary-file-access-via-mimencode","label":"disclosure@vulncheck.com"}],"tags":["nvd","exploit-available"],"epss":0.00781,"epssPercentile":0.54315,"exploits":{"metasploit":["auxiliary/admin/http/contentkeeper_fileaccess"],"checkedAt":"2026-10-02T00:05:28.621Z"},"exploitAvailable":true,"ingestedAt":"2026-10-02T00:04:54.709Z","slug":"CVE-2009-10005","body":"## Overview\n\nContentKeeper Web Appliance (now maintained by Impero Software) versions prior to 125.10 expose the mimencode binary via a CGI endpoint, allowing unauthenticated attackers to retrieve arbitrary files from the filesystem. By crafting a POST request to /cgi-bin/ck/mimencode with traversal and output parameters, attackers can read sensitive files such as /etc/passwd outside the webroot.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":15,"depthScoreParts":{"impact":2.8,"likelihood":0.2,"exploitation":12,"ransomware":0},"changes":[]}