Falcon web server 2.0.0.1020 and earlier allows remote attackers to bypass authentication and read restricted files via an extra / (slash) in the requested URL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Falcon_web_server | Blueface | 2.0.0.1009 (including) | 2.0.0.1009 (including) |
| Falcon_web_server | Blueface | 2.0.0.1020 (including) | 2.0.0.1020 (including) |