Directory traversal vulnerability in Monkey HTTP Daemon 0.1.4 allows remote attackers to read arbitrary files via .. (dot dot) sequences.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2002-09/0298.html | Exploit |
http://www.iss.net/security_center/static/10188.php | |
http://www.securityfocus.com/bid/5792 | Exploit Patch |
Configurations
Information
Published : 2002-12-30 21:00
Updated : 2020-03-26 07:23
NVD link : CVE-2002-2154
Mitre link : CVE-2002-2154
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
monkey-project
- monkey