Falcon web server 2.0.0.1020 and earlier allows remote attackers to bypass authentication and read restricted files via an extra / (slash) in the requested URL.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Falcon_web_server | Blueface | 2.0.0.1009 (including) | 2.0.0.1009 (including) |
Falcon_web_server | Blueface | 2.0.0.1020 (including) | 2.0.0.1020 (including) |