HIGH · 7.5

CVE-2001-0871

Directory traversal vulnerability in HTTP server for Alchemy Eye and Alchemy Network Monitor allows remote attackers to execute arbitrary commands via an HTTP request containing (1) a .. in versions 2...

Vulnerability Description

Directory traversal vulnerability in HTTP server for Alchemy Eye and Alchemy Network Monitor allows remote attackers to execute arbitrary commands via an HTTP request containing (1) a .. in versions 2.0 through 2.6.18, or (2) a DOS device name followed by a .. in versions 2.6.19 through 3.0.10.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
Alchemy LabAlchemy Eye2.0
Dek SoftwareAlchemy Network Monitor<= 3.0.10

References

FAQ

What is CVE-2001-0871?

CVE-2001-0871 is a vulnerability with a CVSS score of 7.5 (HIGH). Directory traversal vulnerability in HTTP server for Alchemy Eye and Alchemy Network Monitor allows remote attackers to execute arbitrary commands via an HTTP request containing (1) a .. in versions 2...

How severe is CVE-2001-0871?

CVE-2001-0871 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2001-0871?

Check the references section above for vendor advisories and patch information. Affected products include: Alchemy Lab Alchemy Eye, Dek Software Alchemy Network Monitor.