AOLserver.Directory.Traversal

description-logoDescription

There is directory traversal vulnerability in AOLserver 3.2. It is possible for a remote user to gain read access to directories outside the root directory. Requesting a specially crafted URL composed of '.../' sequences will disclose an arbitrary directory.

affected-products-logoAffected Products

AOLserver 3.2 Win32.

Impact logoImpact

Unauthorized read access to directories outside the root directory.

recomended-action-logoRecommended Actions

Upgrade to AOLserver version 3.3 or newer.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)