CVE-2010-4181
Directory traversal vulnerability in Yaws 1.89 allows remote attackers to read arbitrary files via ..\ (dot dot backslash) and other sequences.
- Affected products
- Yaws
- Yaws
- = 1.89
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 8.5% (95th percentile)
- Weakness
- CWE-22
- NVD status
- Modified
- Published
- 2010-11-04
CVE-2010-4181 at NVD
1 known exploit for CVE-2010-4181
Proof-of-concept code and exploit modules indexed by Sploitus