PT-2005-2635 · Myserver · Myserver

Published

2005-05-18

·

Updated

2008-09-05

·

CVE-2005-1658

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions MyServer version 0.8
Description A directory traversal issue exists, allowing remote attackers to list the parent directory of the web root via a URL with a "..." (triple dot) in the filemanager.cpp component.
Recommendations For MyServer version 0.8, consider restricting access to the filemanager.cpp component until a patch is available to prevent exploitation of the directory traversal issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1658

Affected Products

Myserver