CVE-2004-0173
Apache HTTP Server <= 1.3.29 and <= 2.0.48 on Cygwin - Directory Traversal via Dot Dot Encoded Backslash
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-0173. PoCs published by Jeremy Bae.
AI-analyzed exploit summary This is a writeup describing a directory traversal vulnerability in Apache on Cygwin platforms. It provides example URLs demonstrating how an attacker could access files outside the server root directory using encoded character sequences.
Description
Directory traversal vulnerability in Apache 1.3.29 and earlier, and Apache 2.0.48 and earlier, when running on Cygwin, allows remote attackers to read arbitrary files via a URL containing "..%5C" (dot dot encoded backslash) sequences.
Exploits (1)
This is a writeup describing a directory traversal vulnerability in Apache on Cygwin platforms. It provides example URLs demonstrating how an attacker could access files outside the server root directory using encoded character sequences.