Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6612 (Mongrel)

BugsAlert Home > CVE-2007-6612 (Mongrel)
 
 

Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences (".%252e").




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6612

Learn more about CVE-2007-6612 (Mongrel)
 
Tags: cve-2007-6612 mongrel

Related Items

      Gentoo Security Update Fixes Opera Multiple Remote Vulnerabilities

      TROJ_AGENT.VSE

      CVE-2008-1954 (web_calendar_pro)

      Brief: Cybercrime gets busy getting organized

      Fedora 9 Update: php-pear-Cache-1.5.5-1.fc9

      CVE-2007-6170 (Asterisk)

      FrSIRT - Lenovo Rescue and Recovery Privilege Escalation Vulnerability

 

Pixel