The web server in Cogent DataHub 7.1.1.63 and previous versions allows remote malicious users to obtain the source code of executable files via a request with a trailing (1) space or (2) %2e (encoded dot).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cogentdatahub cogent datahub 7.1.1.63 |
||
cogentdatahub cogent datahub 7.1.1 |
||
cogentdatahub cogent datahub 7.0.2 |
||
cogentdatahub cogent datahub 7.1.0 |
||
cogentdatahub cogent datahub 7.0 |