Vulnerability Details CVE-2019-8358
In Hiawatha before 10.8.4, a remote attacker is able to do directory traversal if AllowDotFiles is enabled.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 75.7%
CVSS Severity
CVSS v3 Score 8.1
CVSS v2 Score 6.8
Products affected by CVE-2019-8358
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.7.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.8.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:0.9.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.1.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.5.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.6.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:1.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.8.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.8.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.8.2
-
cpe:2.3:a:hiawatha-webserver:hiawatha:10.8.3
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.1.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.3.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.3.2
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.4.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:2.8.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.6.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:3.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:4.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:4.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:4.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:4.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:4.3.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:4.3.2
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.10.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.11.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.12.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.13.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.14.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.8.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:5.9.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.10.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.11.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.12.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.13.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.14.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.15.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.16.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.17.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.17.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.18.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.19.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.8.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:6.9.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.4.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.8.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.8.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:7.8.2
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.3.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.3.2
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.8.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:8.8.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.0.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.1.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.10.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.11.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.12.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.13.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.14.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.15.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.2.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.3.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.3.1
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.4.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.5.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.6.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.7.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.8.0
-
cpe:2.3:a:hiawatha-webserver:hiawatha:9.9.0