Directory traversal vulnerability in Doug Neal's HTTPD Daemon (DNHTTPD) before 0.4.1 allows remote attackers to view arbitrary files via a .. (dot dot) attack using the dot hex code '%2E'.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/apps/freshmeat/2001-07/0002.html | Vendor Advisory |
http://dnhttpd.sourceforge.net/changelog.html |
Configurations
Information
Published : 2001-07-02 21:00
Updated : 2008-09-05 13:26
NVD link : CVE-2001-1266
Mitre link : CVE-2001-1266
JSON object : View
CWE
Products Affected
doug_neal
- dnhttpd