CVE-2009-2544: Path Traversal
Directory traversal vulnerability in the Marcelo Costa FileServer component 1.0 for Microsoft Windows Live Messenger and Messenger Plus! Live (MPL) allows remote authenticated users to list arbitrary directories and read arbitrary files via a .. (dot dot) in a pathname.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2544?
CVE-2009-2544 has a moderate severity rating due to its potential to expose sensitive files.
How do I fix CVE-2009-2544?
To fix CVE-2009-2544, update the Marcelo Costa FileServer component to the latest version that addresses this vulnerability.
Who is affected by CVE-2009-2544?
Users of Marcelo Costa FileServer 1.0 for Microsoft Windows Live Messenger and Messenger Plus! Live may be affected by CVE-2009-2544.
What type of vulnerability is CVE-2009-2544?
CVE-2009-2544 is a directory traversal vulnerability that allows unauthorized file access.
Can CVE-2009-2544 be exploited remotely?
Yes, CVE-2009-2544 can be exploited remotely by authenticated users through crafted pathnames.