Directory traversal vulnerability in BRS WebWeaver HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the (1) syshelp, (2) sysimages, or (3) scripts directories.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Webweaver | Brs | 0.49_beta (including) | 0.49_beta (including) |
Webweaver | Brs | 0.50_beta (including) | 0.50_beta (including) |
Webweaver | Brs | 0.51_beta (including) | 0.51_beta (including) |
Webweaver | Brs | 0.52_beta (including) | 0.52_beta (including) |
Webweaver | Brs | 0.60_beta (including) | 0.60_beta (including) |
Webweaver | Brs | 0.61_beta (including) | 0.61_beta (including) |
Webweaver | Brs | 0.62_beta (including) | 0.62_beta (including) |