CVE-2004-2121 Information

Description

Multiple directory traversal vulnerabilities in Borland Web Server (BWS) 1.0b3 and earlier allow remote attackers to read and download arbitrary files via (1) multi-dot .…..\ sequences or (2) \5c2e2e\ (encoded \..) sequences in the URL.

Reference

http://marc.info/?l=bugtraq&m=107497413413907&w=2 http://securitytracker.com/id?1008840 http://www.securityfocus.com/bid/9486 https://exchange.xforce.ibmcloud.com/vulnerabilities/14948

Share on: