Lucene search

K
prionPRIOn knowledge basePRION:CVE-2008-6508
HistoryMar 23, 2009 - 8:00 p.m.

Directory traversal

2009-03-2320:00:00
PRIOn knowledge base
www.prio-n.com
5

6.8 Medium

AI Score

Confidence

Low

0.665 Medium

EPSS

Percentile

97.9%

Directory traversal vulnerability in the AuthCheck filter in the Admin Console in Openfire 3.6.0a and earlier allows remote attackers to bypass authentication and access the admin interface via a … (dot dot) in a URI that matches the Exclude-Strings list, as demonstrated by a /setup/setup-/… sequence in a URI.

6.8 Medium

AI Score

Confidence

Low

0.665 Medium

EPSS

Percentile

97.9%