Directory traversal vulnerability in the modURL function in instance.c in Weborf before 0.12.3 allows remote attackers to read arbitrary files via ..%2f sequences in a URI.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2010-09-24T18:00:00Z

Updated: 2024-09-16T16:53:45.733Z

Reserved: 2010-09-13T00:00:00Z

Link: CVE-2010-3306

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2010-09-24T19:00:06.323

Modified: 2010-09-27T04:00:00.000

Link: CVE-2010-3306

cve-icon Redhat

No data.