CVE Vulnerabilities

CVE-2001-0871

Published: Dec 21, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in HTTP server for Alchemy Eye and Alchemy Network Monitor allows remote attackers to execute arbitrary commands via an HTTP request containing (1) a .. in versions 2.0 through 2.6.18, or (2) a DOS device name followed by a .. in versions 2.6.19 through 3.0.10.

Affected Software

NameVendorStart VersionEnd Version
Alchemy_eyeAlchemy_lab2.0 (including)2.0 (including)
Alchemy_eyeAlchemy_lab2.1 (including)2.1 (including)
Alchemy_eyeAlchemy_lab2.2 (including)2.2 (including)
Alchemy_eyeAlchemy_lab2.3 (including)2.3 (including)
Alchemy_eyeAlchemy_lab2.4 (including)2.4 (including)
Alchemy_eyeAlchemy_lab2.5 (including)2.5 (including)
Alchemy_eyeAlchemy_lab2.6 (including)2.6 (including)
Alchemy_eyeAlchemy_lab2.6.18 (including)2.6.18 (including)
Alchemy_eyeAlchemy_lab2.6.19 (including)2.6.19 (including)
Alchemy_eyeAlchemy_lab3.0 (including)3.0 (including)
Alchemy_eyeAlchemy_lab3.0.10 (including)3.0.10 (including)
Alchemy_network_monitorDek_software*3.0.10 (including)

References