5
CVSSv2

CVE-2009-4535

Published: 31/12/2009 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 510
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Mongoose 2.8.0 and previous versions allows remote malicious users to obtain the source code for a web page by appending a / (slash) character to the URI.

Vulnerable Product Search on Vulmon Subscribe to Product

valenok mongoose

Exploits

################################################################ # # Mongoose Web Server v28 Multiple Directory Traversal Exploits # Found By: Dr_IDE # Date: Apr 20, 2010 # Tested On: Windows 7 # Download: codegooglecom/p/mongoose/downloads/list # ######################################## ...
####################################################### # # Mongoose Web Server <= 280 Remote Source Disclosure # Found By: Dr_IDE # Tested On: Windows XPSP3 # Download: codegooglecom/p/mongoose/ # ####################################################### - Description - Mongoose Web Server <= 280 is a Windows based HTTP server ...