CVE-2006-1951

Directory traversal vulnerability in SolarWinds TFTP Server 8.1 and earlier allows remote attackers to download arbitrary files via a crafted GET request including "....//" sequences, which are collapsed into "../" sequences by filtering.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:solarwinds:tftp_server:5.0.55_standard:*:*:*:*:*:*:*
cpe:2.3:a:solarwinds:tftp_server:5.0.60standard:*:*:*:*:*:*:*
cpe:2.3:a:solarwinds:tftp_server:8.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-04-24 23:02

Updated : 2024-02-04 16:52


NVD link : CVE-2006-1951

Mitre link : CVE-2006-1951

CVE.ORG link : CVE-2006-1951


JSON object : View

Products Affected

solarwinds

  • tftp_server