Skip to content
High Published: Dec 29, 2001 Modified: Apr 03, 2025

CVE-2001-1432

7.8 CVSS Score High
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:N
Export CVE-2001-1432 Data:
Share:
Link copied!

Description

Directory traversal vulnerability in Cherokee Web Server allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.

CVSS Vector Details

Attack Vector Network
Attack Complexity Low
Confidentiality C
Integrity None
Availability None

Affected Software Configurations

  • a cherokee cherokee_httpd 0.1 * * * * * * *
  • a cherokee cherokee_httpd 0.1.5 * * * * * * *
  • a cherokee cherokee_httpd 0.1.6 * * * * * * *
  • a cherokee cherokee_httpd 0.2 * * * * * * *
  • a cherokee cherokee_httpd 0.2.5 * * * * * * *
  • a cherokee cherokee_httpd 0.2.6 * * * * * * *
  • a cherokee cherokee_httpd 0.2.7 * * * * * * *

Weaknesses (CWE)

  • CWE-22