CVE-1999-1509

Etype Eserv 2.50 - Directory Traversal via URL

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-1509. PoCs published by Ussr Labs.

AI-analyzed exploit summary This is a writeup describing a directory traversal vulnerability in Etype's Eserv product, allowing remote attackers to read arbitrary files on the server's filesystem using ../ sequences in the URL.

Description

Directory traversal vulnerability in Etype Eserv 2.50 web server allows a remote attacker to read any file in the file system via a .. (dot dot) in a URL.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Ussr Labs · textremotewindows
https://www.exploit-db.com/exploits/19601

This is a writeup describing a directory traversal vulnerability in Etype's Eserv product, allowing remote attackers to read arbitrary files on the server's filesystem using ../ sequences in the URL.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Etype Eserv (version not specified)
No auth needed
Prerequisites: Network access to the vulnerable web server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/773
Mailing List mailing-list x_refsource_ntbugtraq
http://marc.info/?l=ntbugtraq&m=94177470915423&w=2
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=94183041514522&w=2

Scores

EPSS 0.0833
EPSS Percentile 94.2%

Details

Status published
Products (1)
etype/eserv 2.50
Published Nov 04, 1999
Tracked Since Feb 18, 2026