Total vulnerabilities in the database
T. Hauck Jana Webserver 1.46 and earlier allows a remote attacker to view arbitrary files via a '..' (dot dot) attack which is URL encoded (%2e%2e).
Software | From | Fixed in |
---|---|---|
t._hauck / jana_web_server | - | 1.46.x |
t._hauck / jana_web_server | 1.0j | 1.0j.x |
t._hauck / jana_web_server | 1.45 | 1.45.x |
t._hauck / jana_web_server | 2.0_beta_1 | 2.0_beta_1.x |