5
CVSSv2

CVE-2009-5087

Published: 12/09/2011 Updated: 10/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in geohttpserver in Geovision Digital Video Surveillance System 8.2 allows remote malicious users to read arbitrary files via a .. (dot dot) in a GET request.

Vulnerable Product Search on Vulmon Subscribe to Product

geovision digital surveillance system 8.2

Exploits

Hi There is a Directory traversal vulnerability in Geovision Digital Video Surveillance System (geohttpserver)version 82 POC: remotehost///////windows/system32/whateversomething PATCH: Vendor has published the new version (83) Regards, Dejan Levaja NSS doo dejan[dot]levaja[at]netsec[dot]rs # milw0rmcom [2009-02-11] ...