Описание
Directory traversal vulnerability in jetty 6.0.x (jetty6) beta16 allows remote attackers to read arbitrary files via a %2e%2e%5c (encoded ../) in the URL. NOTE: this might be the same issue as CVE-2005-3747.
Ссылки
- Exploit
- Exploit
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:jetty:jetty:6.0:*:*:*:*:*:*:*
EPSS
Процентиль: 81%
0.01572
Низкий
5 Medium
CVSS2
Дефекты
CWE-22
Связанные уязвимости
CVSS3: 5.3
redhat
почти 20 лет назад
Directory traversal vulnerability in jetty 6.0.x (jetty6) beta16 allows remote attackers to read arbitrary files via a %2e%2e%5c (encoded ../) in the URL. NOTE: this might be the same issue as CVE-2005-3747.
debian
около 19 лет назад
Directory traversal vulnerability in jetty 6.0.x (jetty6) beta16 allow ...
EPSS
Процентиль: 81%
0.01572
Низкий
5 Medium
CVSS2
Дефекты
CWE-22