CVE-2013-4900
09.09.2013, 17:55
Directory traversal vulnerability in DeWeS web server 0.4.2 and possibly earlier, as used in Twilight CMS, allows remote attackers to read arbitrary files via a ..%5c (dot dot encoded backslash) in a GET request.
Vendor | Product | Version |
---|---|---|
twilightcms | twilight_cms | 5.17 |
twilightcms | twilight_cms | 5.17 |
𝑥
= Vulnerable software versions
References