5
CVSSv2

CVE-2007-0872

Published: 12/02/2007 Updated: 29/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in the Plain Old Webserver (POW) add-on prior to 0.0.9 for Mozilla Firefox allows remote malicious users to read arbitrary files via a .. (dot dot) in the URI.

Vulnerable Product Search on Vulmon Subscribe to Product

plain old webserver plain old webserver 0.0.8

plain old webserver plain old webserver 0.0.7

Exploits

source: wwwsecurityfocuscom/bid/22502/info Plain Old Webserver is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input data Exploiting this issue may allow an attacker to access sensitive information that could aid in further attacks Version 007 is vulnerable; other versions may ...