VYPR

Mongoose

by Sergey Lyubka

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2009-13540.030.03Apr 21, 2009Directory traversal vulnerability in Mongoose 2.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the URI.
CVE-2009-45300.000.00Dec 31, 2009Mongoose 2.8.0 and earlier allows remote attackers to obtain the source code for a web page by appending ::$DATA to the URI.