info
discussion
exploit
solution
references
CherryPy StaticFilter Directory Traversal Vulnerability
Solution:
The vendor has released version 2.1.1 to address this issue.
CherryPy CherryPy 2.0
CherryPy CherryPy-2.1.1.tar.gz
http://prdownloads.sourceforge.net/cherrypy/CherryPy-2.1.1.tar.gz?down load
CherryPy CherryPy 2.1
CherryPy CherryPy-2.1.1.tar.gz
http://prdownloads.sourceforge.net/cherrypy/CherryPy-2.1.1.tar.gz?down load
Privacy Statement
Copyright 2010, SecurityFocus