NA
CVSSv3

CVE-2011-4963

CVSSv4: NA | CVSSv3: NA | CVSSv2: 5 | VMScore: 600 | EPSS: 0.00259 | KEV: Not Included
Published: 26/07/2012 Updated: 21/11/2024

Vulnerability Summary

nginx/Windows 1.3.x prior to 1.3.1 and 1.2.x prior to 1.2.1 allows remote malicious users to bypass intended access restrictions and access restricted files via (1) a trailing . (dot) or (2) certain "$index_allocation" sequences in a request.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

f5 nginx

f5 nginx 1.3.0