1 results (0.003 seconds)

CVSS: 7.8EPSS: 22%CPEs: 1EXPL: 4

28 Dec 2014 — Directory traversal vulnerability in the TFTP Server 1.0.0.24 in Ipswitch WhatsUp Gold allows remote attackers to read arbitrary files via a .. (dot dot) in the Filename field of an RRQ operation. Vulnerailidad de salto en disco en TFTP Server 1.0.0.24 en Ipswitch WhatsUp Gold permite a atacantes remotos leer ficheros arbitrarios a través de .. (punto punto) en el campo Filename de una operación RRQ Directory traversal vulnerability in the TFTP Server 1.0.0.24 in Ipswitch WhatsUp Gold allows remote attacker... • https://packetstorm.news/files/id/180941 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •