CVE-2001-1586

Directory traversal vulnerability in SimpleServer:WWW 1.13 and earlier allows remote attackers to execute arbitrary programs via encoded ../ ("%2E%2E%2F%") sequences in a request to the cgi-bin/ directory, a different vulnerability than CVE-2000-0664.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:analogx:simpleserver_www:*:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.01:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.03:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.04:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.05:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.06:*:*:*:*:*:*:*

History

20 Nov 2024, 23:38

Type Values Removed Values Added
References () http://seclists.org/bugtraq/2001/Jul/660 - Exploit () http://seclists.org/bugtraq/2001/Jul/660 - Exploit
References () http://www.analogx.com/contents/download/network/sswww.htm - () http://www.analogx.com/contents/download/network/sswww.htm -
References () http://www.securiteam.com/windowsntfocus/5TP0B1P4UK.html - Exploit () http://www.securiteam.com/windowsntfocus/5TP0B1P4UK.html - Exploit
References () http://www.securityfocus.com/bid/3112 - Exploit () http://www.securityfocus.com/bid/3112 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/56631 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/56631 -

Information

Published : 2010-02-12 21:30

Updated : 2024-11-20 23:38


NVD link : CVE-2001-1586

Mitre link : CVE-2001-1586

CVE.ORG link : CVE-2001-1586


JSON object : View

Products Affected

analogx

  • simpleserver_www
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')