CVE-2001-1586

Directory traversal vulnerability in SimpleServer:WWW 1.13 and earlier allows remote attackers to execute arbitrary programs via encoded ../ ("%2E%2E%2F%") sequences in a request to the cgi-bin/ directory, a different vulnerability than CVE-2000-0664.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:analogx:simpleserver_www:*:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.01:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.03:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.04:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.05:*:*:*:*:*:*:*
cpe:2.3:a:analogx:simpleserver_www:1.06:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-02-12 21:30

Updated : 2023-12-10 11:03


NVD link : CVE-2001-1586

Mitre link : CVE-2001-1586

CVE.ORG link : CVE-2001-1586


JSON object : View

Products Affected

analogx

  • simpleserver_www
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')