Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a "%2E" instead of a "."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.058
EPSS Ranking 90.0%