CVE-2011-3500 Information

Description

Directory traversal vulnerability in the web server in Cogent DataHub 7.1.1.63 and earlier allows remote attackers to read arbitrary files via a ..\ (dot dot backslash) in an HTTP request.

Reference

http://aluigi.altervista.org/adv/cogent_2-adv.txt http://www.us-cert.gov/control_systems/pdf/ICS-ALERT-11-256-03.pdf

Share on: