Vulnerabilities (CVE)

Filtered by vendor Free Peers Subscribe
Filtered by product Bearshare
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0368 1 Free Peers 1 Bearshare 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in BearShare 2.2.2 and earlier allows a remote attacker to read certain files via a URL containing a series of . characters, a variation of the .. (dot dot) attack.
CVE-2002-2144 1 Free Peers 1 Bearshare 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in BearShare 4.0.5 and 4.0.6 allows remote attackers to read files outside of the web root by hex-encoding the "/" (forward slash) or "." (dot) characters.