IBM Tivoli SecureWay Policy Director...

- AV AC AU C I A
发布: 2001-07-23
修订: 2025-04-13

It is possible for a remote user to traverse the directories of a host running IBM Tivoli SecureWay Policy Director. Submitting a specially crafted URL using hex encoded 'double dot' sequences will reveal arbitrary directories. In addition to revealing directories, this vulnerability could enable a user to obtain the contents of files readable by the webserver user.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息