CVE-2007-6314

BarracudaDrive Web Server <3.8 - Info Disclosure

Title source: llm

Description

BarracudaDrive Web Server before 3.8 allows remote attackers to read the source code for web scripts by appending a (1) + (plus), (2) . (dot), or (3) %80 and similar characters to the file name in the URL.

Exploits (1)

exploitdb WORKING POC
remotewindows
https://www.exploit-db.com/exploits/4713

Scores

EPSS 0.0633
EPSS Percentile 91.0%

Details

CWE
CWE-20
Status published
Products (2)
real_time_logic/barracudadrive_web_server 3.7.2
real_time_logic/barracudadrive_web_server_home_server 3.7.2
Published Dec 12, 2007
Tracked Since Feb 18, 2026