Directory traversal vulnerability in Multi Router Traffic Grapher (MRTG) allows remote attackers to read portions of arbitrary files via a .. (dot dot) in the cfg parameter for (1) 14all.cgi, (2) 14all-1.1.cgi, (3) traffic.cgi, or (4) mrtg.cgi.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Multi_router_traffic_grapher_cgi | Mrtg | 2.9.17 (including) | 2.9.17 (including) |