cve/2007/CVE-2007-6404.md
2024-06-18 02:51:15 +02:00

651 B

CVE-2007-6404

Description

Directory traversal vulnerability in Sergey Lyubka Simple HTTPD (shttpd) 1.38 and earlier on Windows allows remote attackers to read arbitrary files via a ..\ (dot dot backslash) in the URI.

POC

Reference

Github

No PoCs found on GitHub currently.