CVE-2001-0615
Last modified
CVE-2001-0615 is a vulnerability of currently unknown severity. Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to read arbitrary files via a specially crafted URL which includes variations of a '..' (dot dot) attack such as '...' or '....'.. EPSS estimates a 3.67% chance of exploitation in the next 30 days.
Description
Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to read arbitrary files via a specially crafted URL which includes variations of a '..' (dot dot) attack such as '...' or '....'.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Faust Informatics | Freestyle Chat | <= 4.1 |
References
- http://archives.neohapsis.com/archives/bugtraq/2001-05/0241.htmlExploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/2776Exploit, Patch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2001-05/0241.htmlExploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/2776Exploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2001-0615?
How severe is CVE-2001-0615?
How do I fix CVE-2001-0615?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2001
- CVE-2001-0609Format string vulnerability in Infodrom cfingerd 1.4.3 and e…9.8
- CVE-2001-0610kfm as included with KDE 1.x can allow a local attacker to g…
- CVE-2001-0611Becky! 2.00.05 and earlier can allow a remote attacker to ga…
- CVE-2001-0612McAfee Remote Desktop 3.0 and earlier allows remote attacker…
- CVE-2001-0613Omnicron Technologies OmniHTTPD Professional 2.08 and earlie…
- CVE-2001-0614Carello E-Commerce 1.2.1 and earlier allows a remote attacke…
- CVE-2001-0616Faust Informatics Freestyle Chat server prior to 4.1 SR3 all…
- CVE-2001-0617Allied Telesyn AT-AR220e cable/DSL router firmware 1.08a RC1…
- CVE-2001-0618Orinoco RG-1000 wireless Residential Gateway uses the last 5…
- CVE-2001-0619The Lucent Closed Network protocol can allow remote attacker…
- CVE-2001-0620iPlanet Calendar Server 5.0p2 and earlier allows a local att…
- CVE-2001-0621The FTP server on Cisco Content Service 11000 series switche…
Are you affected by CVE-2001-0615?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
