CVE-2008-1169 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in the embedded HTTP server in SCI Photo Chat Server 3.4.9 and earlier allows remote attackers to read arbitrary files via a ..\\ (dot dot backslash) or ../\ (dot dot forward slash) in the GET command.
Reference
http://aluigi.altervista.org/adv/scichatdt-adv.txt http://www.securityfocus.com/bid/27872 http://www.vupen.com/english/advisories/2008/0614 https://exchange.xforce.ibmcloud.com/vulnerabilities/40655
Share on: