Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7061
HistoryJul 16, 2018 - 7:08 a.m.

Directory Traversal

2018-07-1607:08:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

EPSS

0.001

Percentile

46.7%

m-server is vulnerable to directory traversals. The application does not restrict escape characters, allowing a malicious user to traverse the directories using a curl request such as http://localhost:8080/../../../../../../etc/passwd to gain sensitive information.

EPSS

0.001

Percentile

46.7%