Directory traversal vulnerability in Twonky Server 7.0.11 up to and including 8.5 allows remote malicious users to share the contents of arbitrary directories via a .. (dot dot) in the contentbase parameter to rpc/set_all.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
lynxtechnology twonky server |