CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.4. It may be remotely exploitable.
CVE
CVE-2007-6612
Severity
MEDIUM
CVSS
6.4
EPSS
3.00%
Original NVD Description
Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences (".%252e").