Description
Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain content of arbitrary local files via specially-crafted URL request.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T00:01:51.588Z
Reserved: 2011-11-04T00:00:00.000Z
Link: CVE-2011-4350
No data.
Status : Modified
Published: 2019-11-26T05:15:14.537
Modified: 2024-11-21T01:32:17.417
Link: CVE-2011-4350
No data.
OpenCVE Enrichment
No data.
Weaknesses