CVE-2001-0784: Medium severity Icecast Icecast vulnerability
Published Oct 18, 2001
·Updated
Directory traversal vulnerability in Icecast 1.3.10 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack using encoded URL characters.
Affected Software
3 affected components
Icecast Icecast<=1.310
Icecast Icecast=1.3.8_beta2
Icecast Icecast=1.3.7
Event History
Oct 18, 2001
CVE Published
04:00 AM
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0784?
CVE-2001-0784 is considered a high severity vulnerability due to its potential for remote file access.
2
How do I fix CVE-2001-0784?
To fix CVE-2001-0784, upgrade Icecast to version 1.3.11 or later, which patches the directory traversal issue.
3
What versions of Icecast are affected by CVE-2001-0784?
CVE-2001-0784 affects Icecast version 1.3.10 and earlier, including versions 1.3.8_beta2 and 1.3.7.
4
What type of attack does CVE-2001-0784 involve?
CVE-2001-0784 involves a directory traversal attack that allows unauthorized file access using encoded URL characters.
5
Can CVE-2001-0784 impact server security?
Yes, CVE-2001-0784 can significantly impact server security by allowing remote attackers to read sensitive files.