Описание
Directory traversal vulnerability in Aldo's Web Server (aweb) 1.5 allows remote attackers to view arbitrary files via a .. (dot dot) in an HTTP GET request.
Ссылки
- ExploitIssue TrackingThird Party Advisory
- Third Party Advisory
- ExploitVendor Advisory
- Broken Link
- Third Party AdvisoryVDB Entry
- VDB Entry
- ExploitIssue TrackingThird Party Advisory
- Third Party Advisory
- ExploitVendor Advisory
- Broken Link
- Third Party AdvisoryVDB Entry
- VDB Entry
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:aldostools:aldo\'s_web_server:1.5:*:*:*:*:*:*:*
EPSS
Процентиль: 87%
0.03154
Низкий
5 Medium
CVSS2
Дефекты
CWE-22
Связанные уязвимости
github
почти 4 года назад
Directory traversal vulnerability in Aldo's Web Server (aweb) 1.5 allows remote attackers to view arbitrary files via a .. (dot dot) in an HTTP GET request.
EPSS
Процентиль: 87%
0.03154
Низкий
5 Medium
CVSS2
Дефекты
CWE-22