ritp is a static web server. ritp is vulnerable to a directory traversal issue whereby an attacker can gain access to the file system by placing ../ in the URL. Access is restricted to files with a file extension, so files such as /etc/passwd are not accessible.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-0399 ritp is a static web server. ritp is vulnerable to a directory traversal issue whereby an attacker can gain access to the file system by placing ../ in the URL. Access is restricted to files with a file extension, so files such as /etc/passwd are not accessible.
Github GHSA Github GHSA GHSA-gf7h-vg5v-cch6 Directory Traversal in ritp
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: hackerone

Published:

Updated: 2024-08-05T20:20:04.657Z

Reserved: 2017-10-29T00:00:00

Link: CVE-2017-16198

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-06-07T02:29:06.537

Modified: 2024-11-21T03:16:01.110

Link: CVE-2017-16198

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses