Directory traversal vulnerability in Xerver Free Web Server 2.10 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in an HTTP GET request.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Xerver |
Xerver |
* |
2.10 (including) |
References