← back
CVE-2017-16029

CVE-2017-16029

EPSS 1.8%CWE-22
hostr is a simple web server that serves up the contents of the current directory. There is a directory traversal vulnerability in hostr 2.3.5 and earlier that allows an attacker to read files outside the current directory by sending `../` in the url path for GET requests.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →