CVE

Id
10904  
CVE No.
CVE-2004-2478  
Status
Candidate  
Description
Unspecified vulnerability in Jetty HTTP Server, as used in (1) IBM Trading Partner Interchange before 4.2.4, (2) CA Unicenter Web Services Distributed Management (WSDM) before 3.11, and possibly other products, allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.  
Phase
Assigned (20050821)  
Votes
None (candidate not yet proposed)  
Comments