Описание
Directory traversal vulnerability in Path.pm in Mojolicious before 1.16 allows remote attackers to read arbitrary files via a %2f..%2f (encoded slash dot dot slash) in a URI.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | not-affected | 1.21-1 |
| hardy | DNE | |
| lucid | DNE | |
| maverick | DNE | |
| natty | ignored | end of life |
| oneiric | not-affected | 1.21-1 |
| precise | not-affected | 1.21-1 |
| quantal | not-affected | 1.21-1 |
| upstream | released | 1.16 |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 84%
0.02106
Низкий
5 Medium
CVSS2
Связанные уязвимости
nvd
больше 14 лет назад
Directory traversal vulnerability in Path.pm in Mojolicious before 1.16 allows remote attackers to read arbitrary files via a %2f..%2f (encoded slash dot dot slash) in a URI.
debian
больше 14 лет назад
Directory traversal vulnerability in Path.pm in Mojolicious before 1.1 ...
github
больше 3 лет назад
Directory traversal vulnerability in Path.pm in Mojolicious before 1.16 allows remote attackers to read arbitrary files via a %2f..%2f (encoded slash dot dot slash) in a URI.
EPSS
Процентиль: 84%
0.02106
Низкий
5 Medium
CVSS2