Directory Traversal Vulnerability in Dasafio Web Server Allows Unauthorized File Access

Directory Traversal Vulnerability in Dasafio Web Server Allows Unauthorized File Access

CVE-2017-16179 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

dasafio is a web server. dasafio is vulnerable to a directory traversal issue, giving an attacker access to the filesystem by placing "../" in the url. File access is restricted to only .html files.

Learn more about our Web App Pen Testing.