Unrated severityNVD Advisory· Published Sep 16, 2011· Updated Apr 29, 2026
CVE-2011-3500
CVE-2011-3500
Description
Directory traversal vulnerability in the web server in Cogent DataHub 7.1.1.63 and earlier allows remote attackers to read arbitrary files via a ..\ (dot dot backslash) in an HTTP request.
Affected products
5cpe:2.3:a:cogentdatahub:cogent_datahub:7.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.1.1.63:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- aluigi.altervista.org/adv/cogent_2-adv.txtnvdExploit
- www.us-cert.gov/control_systems/pdf/ICS-ALERT-11-256-03.pdfnvdUS Government Resource
News mentions
0No linked articles in our index yet.