mirror of
https://github.com/0xMarcio/cve.git
synced 2026-03-02 19:53:47 +00:00
692 B
692 B
CVE-2014-3855
Description
Directory traversal vulnerability in download.py in Pyplate 0.08 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.
POC
Reference
- http://www.openwall.com/lists/oss-security/2014/05/14/3
- http://www.openwall.com/lists/oss-security/2014/05/23/1
Github
No PoCs found on GitHub currently.