Unrated severityNVD Advisory· Published Sep 16, 2011· Updated Apr 29, 2026
CVE-2011-3502
CVE-2011-3502
Description
The web server in Cogent DataHub 7.1.1.63 and earlier allows remote attackers to obtain the source code of executable files via a request with a trailing (1) space or (2) %2e (encoded dot).
Affected products
5cpe:2.3:a:cogentdatahub:cogent_datahub:7.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:cogentdatahub:cogent_datahub:7.1.1.63:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- aluigi.altervista.org/adv/cogent_4-adv.txtnvdExploit
- www.us-cert.gov/control_systems/pdf/ICS-ALERT-11-256-03.pdfnvdUS Government Resource
News mentions
0No linked articles in our index yet.