Directory traversal vulnerability in the media server in Orb Networks Orb before 2.01.0022 allows remote attackers to read arbitrary files via directory traversal sequences in an HTTP GET request.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:54
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=full-disclosure&m=122606860208526&w=2 - Exploit | |
References | () http://secunia.com/advisories/32592 - | |
References | () http://securityreason.com/securityalert/4773 - | |
References | () http://www.securityfocus.com/bid/32187 - Patch | |
References | () http://www.vupen.com/english/advisories/2008/3082 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/46461 - |
Information
Published : 2008-12-17 18:30
Updated : 2025-04-09 00:30
NVD link : CVE-2008-5645
Mitre link : CVE-2008-5645
CVE.ORG link : CVE-2008-5645
JSON object : View
Products Affected
orb_networks
- orb
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')