Pico Server (pServ) 3.2 and previous versions allows remote malicious users to execute arbitrary commands via a URL with multiple leading "/" (slash) characters and ".." sequences.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
pico server pico server 3.0_beta_3 |
||
pico server pico server 3.1 |
||
pico server pico server 3.2 |
||
pico server pico server 3.0 |