CVE-2021-40668: Path Traversal
Published Jun 9, 2022
·Updated
The Android application HTTP File Server (Version 1.4.1) by 'slowscript' is affected by a path traversal vulnerability that permits arbitrary directory listing, file read, and file write.
Affected Software
1 affected component
Http File Server Project Http File Server=1.4.1
Event History
Jun 9, 2022
CVE Published
via MITRE·12:51 PM
Data Sourced
via MITRE·12:51 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-40668?
CVE-2021-40668 has been classified as a critical vulnerability due to its potential for arbitrary file access.
2
How do I fix CVE-2021-40668?
To mitigate CVE-2021-40668, users should upgrade to a patched version of the HTTP File Server or implement strict input validation.
3
What are the consequences of CVE-2021-40668?
Exploiting CVE-2021-40668 could allow an attacker to list directories and read or write unauthorized files.
4
What versions are affected by CVE-2021-40668?
CVE-2021-40668 specifically affects version 1.4.1 of the HTTP File Server by slowscript.
5
Who is vulnerable to CVE-2021-40668?
Any user of HTTP File Server version 1.4.1 is vulnerable to CVE-2021-40668 if they have not taken protective measures.