CVE-2013-3922
25.11.2013, 19:55
Directory traversal vulnerability in Gummy Bear Studios FTP Drive + HTTP Server 1.0.4 and earlier allows remote attackers to read arbitrary files via a ..%2f (encoded dot dot slash) in a GET request.
Vendor | Product | Version |
---|---|---|
gummybearstudios | ftp_drive_\+_http_server | 𝑥 ≤ 1.0.4 |
𝑥
= Vulnerable software versions