Vulnerability Details CVE-2001-0871
Directory traversal vulnerability in HTTP server for Alchemy Eye and Alchemy Network Monitor allows remote attackers to execute arbitrary commands via an HTTP request containing (1) a .. in versions 2.0 through 2.6.18, or (2) a DOS device name followed by a .. in versions 2.6.19 through 3.0.10.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.039
EPSS Ranking 87.9%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2001-0871
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.0
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.1
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.2
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.3
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.4
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.5
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.6
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.6.18
-
cpe:2.3:a:alchemy_lab:alchemy_eye:2.6.19
-
cpe:2.3:a:alchemy_lab:alchemy_eye:3.0
-
cpe:2.3:a:alchemy_lab:alchemy_eye:3.0.10
-
cpe:2.3:a:dek_software:alchemy_network_monitor:*