Directory traversal vulnerability in webfs before 1.20 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a Hostname header.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Webfs | Webfs | 1.17 (including) | 1.17 (including) |
Webfs | Webfs | 1.18 (including) | 1.18 (including) |
Webfs | Webfs | 1.19 (including) | 1.19 (including) |
Webfs | Webfs | 1.20 (including) | 1.20 (including) |