Description
Path traversal in the static file service in Iodine less than 0.7.33 allows an unauthenticated, remote attacker to read files outside the public folder via malicious URLs.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-0692 | Path traversal in the static file service in Iodine less than 0.7.33 allows an unauthenticated, remote attacker to read files outside the public folder via malicious URLs. |
Github GHSA |
GHSA-85rf-xh54-whp3 | Malicious URL drafting attack against iodines static file server may allow path traversal |
References
History
Sat, 29 Nov 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Path traversal in the static file service in Iodine less than 0.7.33 allows an unauthenticated, remote attacker to read files outside the public folder via malicious URLs. | Path traversal in the static file service in Iodine less than 0.7.33 allows an unauthenticated, remote attacker to read files outside the public folder via malicious URLs. |
Mon, 16 Jun 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-11-29T01:20:07.474Z
Reserved: 2024-01-04T18:44:53.108Z
Link: CVE-2024-22050
Updated: 2024-08-01T22:35:34.791Z
Status : Modified
Published: 2024-01-04T21:15:10.100
Modified: 2025-11-29T02:15:50.880
Link: CVE-2024-22050
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA