CVE-2015-5638
20.09.2015, 14:59
Directory traversal vulnerability in H2O before 1.4.5 and 1.5.x before 1.5.0-beta2, when the file.dir directive is enabled, allows remote attackers to read arbitrary files via a crafted URL.
Vendor | Product | Version |
---|---|---|
dena | h20 | 𝑥 ≤ 1.4.4 |
dena | h20 | 𝑥 ≤ 1.5.0 |
𝑥
= Vulnerable software versions

Debian Releases