Back

CVE-2001-0205

Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by inserting "..." into the requested pathname, a modified .. (dot dot) attack.

Published: May 3, 2001 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
aol aol_server 3.2

GitHub Security Advisory GHSA-q2m7-jcm6-6x48

Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 23.62%

Top 2% most likely to be exploited

Threat Score 27.1 / 100

Data Sources

NVD EPSS GitHub