CVE Vulnerabilities

CVE-2006-0847

Published: Feb 22, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in the staticfilter component in CherryPy before 2.1.1 allows remote attackers to read arbitrary files via .. sequences in unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
CherrypyCherrypy0.1 (including)0.1 (including)
CherrypyCherrypy0.2 (including)0.2 (including)
CherrypyCherrypy0.3 (including)0.3 (including)
CherrypyCherrypy0.4 (including)0.4 (including)
CherrypyCherrypy0.5 (including)0.5 (including)
CherrypyCherrypy0.6 (including)0.6 (including)
CherrypyCherrypy0.7 (including)0.7 (including)
CherrypyCherrypy0.8 (including)0.8 (including)
CherrypyCherrypy0.8_beta (including)0.8_beta (including)
CherrypyCherrypy0.9 (including)0.9 (including)
CherrypyCherrypy0.9_beta (including)0.9_beta (including)
CherrypyCherrypy0.9_gamma (including)0.9_gamma (including)
CherrypyCherrypy0.9_rc1 (including)0.9_rc1 (including)
CherrypyCherrypy0.10 (including)0.10 (including)
CherrypyCherrypy0.10_beta (including)0.10_beta (including)
CherrypyCherrypy0.10_rc1 (including)0.10_rc1 (including)
CherrypyCherrypy2.0.0 (including)2.0.0 (including)
CherrypyCherrypy2.0.0a1 (including)2.0.0a1 (including)
CherrypyCherrypy2.1.0 (including)2.1.0 (including)
CherrypyCherrypy2.1.0_beta (including)2.1.0_beta (including)
CherrypyCherrypy2.1.0_rc1 (including)2.1.0_rc1 (including)
CherrypyCherrypy2.1.0_rc2 (including)2.1.0_rc2 (including)
Cherrypy3Ubuntudevel*
Cherrypy3Ubuntugutsy*
Cherrypy3Ubuntuhardy*
Cherrypy3Ubuntuintrepid*
Cherrypy3Ubuntujaunty*
Cherrypy3Ubuntukarmic*
Python-cherrypyUbuntudapper*
Python-cherrypyUbuntudevel*
Python-cherrypyUbuntuedgy*
Python-cherrypyUbuntufeisty*
Python-cherrypyUbuntugutsy*
Python-cherrypyUbuntuhardy*
Python-cherrypyUbuntuintrepid*
Python-cherrypyUbuntujaunty*
Python-cherrypyUbuntukarmic*

References