CVE-2009-2544
MEDIUM 6.8EPSS 3.4%
Directory traversal vulnerability in the Marcelo Costa FileServer component 1.0 for Microsoft Windows Live Messenger and Messenger Plus! Live (MPL) allows remote authenticated users to list arbitrary directories and read arbitrary files via a .. (dot dot) in a pathname.
- CVSS v2.0
- 6.8 MEDIUM
AV:N/AC:L/Au:S/C:C/I:N/A:N - EPSS
- 3.43% chance of exploitation in the next 30 days, 88th percentile
- Published
- 2009-07-20
- Updated
- 2024-08-07