header-logo
Suggest Exploit
vendor:
OneHTTPD
by:
N/A
CVSS
N/A
Directory Traversal
22
CWE
Product Name: OneHTTPD
Affected Version From: 0.6
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:

OneHTTPD Directory Traversal Vulnerability

OneHTTPD is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input data. Exploiting the issue may allow an attacker to obtain sensitive information that could aid in further attacks.

Mitigation:

Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/39757/info

OneHTTPD is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input data.

Exploiting the issue may allow an attacker to obtain sensitive information that could aid in further attacks.

OneHTTPD 0.6 is vulnerable; other versions may also be affected. 

http://www.example.com/%C2../%C2../%C2../%C2../%C2../%C2../%C2../%C2../