Weakness Name | Source | |
---|---|---|
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory. |
Metrics | Score | Severity | CVSS Vector | Source |
---|---|---|---|---|
V2 | 5 | AV:N/AC:L/Au:N/C:P/I:N/A:N | [email protected] |
Publication date : 2007-03-13 23h00 +00:00
Author : D. Matscheko
EDB Verified : Yes
Apache>>Http_server >> Version -
Apache>>Tomcat >> Version From (including) 5.0.0 To (excluding) 5.5.22
Apache>>Tomcat >> Version From (including) 6.0.0 To (excluding) 6.0.10