Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-1231

Опубликовано: 12 янв. 2016
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3
CVSS3: 5.9

Описание

Directory traversal vulnerability in the HTTP file-serving module (mod_http_files) in Prosody 0.9.x before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) in an unspecified path.

РелизСтатусПримечание
devel

not-affected

0.9.9-1
esm-apps/xenial

not-affected

0.9.9-1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [0.9.1-1ubuntu0.1]]
precise

ignored

end of life
precise/esm

DNE

precise was needs-triage
trusty

released

0.9.1-1ubuntu0.1
trusty/esm

DNE

trusty was released [0.9.1-1ubuntu0.1]
upstream

released

0.9.9-1
vivid

released

0.9.7-2+deb8u2build0.15.04.1
vivid/stable-phone-overlay

DNE

Показывать по

4.3 Medium

CVSS2

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
nvd
около 10 лет назад

Directory traversal vulnerability in the HTTP file-serving module (mod_http_files) in Prosody 0.9.x before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) in an unspecified path.

CVSS3: 5.9
debian
около 10 лет назад

Directory traversal vulnerability in the HTTP file-serving module (mod ...

CVSS3: 5.9
github
больше 3 лет назад

Directory traversal vulnerability in the HTTP file-serving module (mod_http_files) in Prosody 0.9.x before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) in an unspecified path.

4.3 Medium

CVSS2

5.9 Medium

CVSS3