Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6672 (Jetty)

BugsAlert Home > CVE-2007-6672 (Jetty)
 
 

Directory traversal vulnerability in Mortbay Jetty 6.1.5 and 6.1.6 allows remote attackers to bypass protection mechanisms and read arbitrary files via directory traversal sequences in the URI, as demonstrated by files in WEB-INF, related to improper handling of consecutive '/' (slash) characters.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6672

Learn more about CVE-2007-6672 (Jetty)
 
Tags: cve-2007-6672 jetty

Related Items

      Bugtraq: ZDI-08-043: Sun Java Web Start vm args Stack Buffer Overflow

      RedHat: Important: cups security update

      CVE-2008-4712 (lnblog)

      FrSIRT - Ipswitch WS_FTP Server with SSH Remote Buffer Overflow Vulnerability

      Sun Java System Web Proxy Server Cross Site Scripting Vulnerabilities

      RedHat: Important: freetype security update

      CVE-2008-0454 (Skype, ie)

 

Pixel