Tracker / CVE-2010-2266
CVE-2010-2266
Medium 5.0
nginx 0.8.36 allows remote attackers to cause a denial of service (crash) via certain encoded directory traversal sequences that trigger memory corruption, as demonstrated using the "%c0.%c0." sequence.
Affected products and versions
| f5 | nginx · 0.7.52 → 0.7.67 |
|---|---|
| f5 | nginx · 0.8.0 → 0.8.40 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.