Directory traversal vulnerability in Aprelium Abyss Web Server (abyssws) before 1.0.0.2 allows remote attackers to read files outside the web root, including the abyss.conf file, via URL-encoded .. (dot dot) sequences in the HTTP request.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Abyss_web_server | Aprelium_technologies | 1.0 (including) | 1.0 (including) |