Web Path Directory Traversal in the Novus HTTP Server. The Novus HTTP Server is affected by the Directory Traversal for Arbitrary File Access vulnerability. A remote, unauthenticated attacker using an HTTP GET request may be able to exploit this issue to access sensitive data. The issue was discovered in the NMS (Novus Management System) software through 1.51.2
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/163453/Novus-Management-System-Directory-Traversal-Cross-Site-Scripting.html | Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2021/Jul/20 | Mailing List Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2021-07-19T17:04:20
Updated: 2021-07-19T17:10:48
Reserved: 2021-06-17T00:00:00
Link: CVE-2021-34820
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-07-19T18:15:08.757
Modified: 2021-07-28T18:29:38.887
Link: CVE-2021-34820
JSON object: View
Redhat Information
No data.
CWE