Directory traversal vulnerability in ifx CGI program in Informix Web DataBlade allows remote attackers to read arbitrary files via a .. (dot dot) in the LO parameter.
| Software | From | Fixed in |
|---|---|---|
| ibm / informix_web_datablade | 4.10 | 4.10.x |
| ibm / informix_web_datablade | 3.4 | 3.4.x |
| ibm / informix_web_datablade | 3.5 | 3.5.x |
| ibm / informix_web_datablade | 4.11 | 4.11.x |
| ibm / informix_web_datablade | 3.3 | 3.3.x |
| ibm / informix_web_datablade | 4.12 | 4.12.x |
| ibm / informix_web_datablade | 3.7 | 3.7.x |
| ibm / informix_web_datablade | 3.6 | 3.6.x |