Directory traversal vulnerability in KeyFocus web server 1.0.8 allows remote attackers to read arbitrary files for recognized MIME type files via "...", "....", ".....", and other multiple dot sequences.
References
Configurations
Information
Published : 2002-12-30 21:00
Updated : 2008-09-05 13:33
NVD link : CVE-2002-2403
Mitre link : CVE-2002-2403
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
key_focus
- kf_web_server