HIGH · 7.8

CVE-2008-1169

Directory traversal vulnerability in the embedded HTTP server in SCI Photo Chat Server 3.4.9 and earlier allows remote attackers to read arbitrary files via a "..\" (dot dot backslash) or "../" (dot d...

Vulnerability Description

Directory traversal vulnerability in the embedded HTTP server in SCI Photo Chat Server 3.4.9 and earlier allows remote attackers to read arbitrary files via a "..\" (dot dot backslash) or "../" (dot dot forward slash) in the GET command.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:C/I:N/A:N
Confidentiality
COMPLETE
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
Simm-CommSci Photo Chat<= 3.4.9

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-1169?

CVE-2008-1169 is a vulnerability with a CVSS score of 7.8 (HIGH). Directory traversal vulnerability in the embedded HTTP server in SCI Photo Chat Server 3.4.9 and earlier allows remote attackers to read arbitrary files via a "..\" (dot dot backslash) or "../" (dot d...

How severe is CVE-2008-1169?

CVE-2008-1169 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-1169?

Check the references section above for vendor advisories and patch information. Affected products include: Simm-Comm Sci Photo Chat.