Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2007-5657 | The safe_path function in shttp before 0.0.5 allows remote attackers to conduct directory traversal attacks and read files via a combination of ".." and sub-directory specifiers that resolve to a pathname that is at or below the same level as the web document root, but in a different part of the directory tree. |
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T15:39:13.666Z
Reserved: 2007-10-28T00:00:00.000Z
Link: CVE-2007-5685
No data.
Status : Modified
Published: 2007-10-28T17:08:00.000
Modified: 2026-06-16T22:46:37.760
Link: CVE-2007-5685
No data.
OpenCVE Enrichment
No data.
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
EUVD