Описание
Directory traversal vulnerability in the AVM IGD CTRL Service in Fritz!DSL 02.02.29 allows remote attackers to read arbitrary files via ..%5C (URL-encoded dot dot backslash) sequences in a URI requested from the AR7 webserver.
Directory traversal vulnerability in the AVM IGD CTRL Service in Fritz!DSL 02.02.29 allows remote attackers to read arbitrary files via ..%5C (URL-encoded dot dot backslash) sequences in a URI requested from the AR7 webserver.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-0357
- https://exchange.xforce.ibmcloud.com/vulnerabilities/31556
- http://lists.grok.org.uk/pipermail/full-disclosure/2007-January/051844.html
- http://osvdb.org/32866
- http://secunia.com/advisories/23774
- http://securityreason.com/securityalert/2159
- http://www.securityfocus.com/bid/22093
- http://www.vupen.com/english/advisories/2007/0236
EPSS
Процентиль: 92%
0.08611
Низкий
CVE ID
Связанные уязвимости
nvd
почти 19 лет назад
Directory traversal vulnerability in the AVM IGD CTRL Service in Fritz!DSL 02.02.29 allows remote attackers to read arbitrary files via ..%5C (URL-encoded dot dot backslash) sequences in a URI requested from the AR7 webserver.
EPSS
Процентиль: 92%
0.08611
Низкий