Back
CVE-2004-2464
Directory traversal vulnerability in ADA Image Server (ImgSvr) 0.4 allows remote attackers to read arbitrary files or list directories via hex-encoded "..//" sequences ("%2e%2e%2f%2f"). NOTE: it was later reported that 0.6.21 and earlier is also affected.
Published: Dec 31, 2004
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| ada | imgsvr | 0.4 |
GitHub Security Advisory GHSA-wwmr-ccvg-gjg3
Directory traversal vulnerability in ADA Image Server (ImgSvr) 0.4 allows remote attackers to...
References (12)
- http://members.lycos.co.uk/r34ct/main/ADA%20Image%20Server%20%28ImgSvr%29%200.4.txt
- http://secunia.com/advisories/11287 Vendor Advisory
- http://www.osvdb.org/4946 Exploit
- http://www.securityfocus.com/archive/1/485490/100/100/threaded
- http://www.securityfocus.com/bid/10048 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16680
- http://members.lycos.co.uk/r34ct/main/ADA%20Image%20Server%20%28ImgSvr%29%200.4.txt
- http://secunia.com/advisories/11287 Vendor Advisory
- http://www.osvdb.org/4946 Exploit
- http://www.securityfocus.com/archive/1/485490/100/100/threaded
- http://www.securityfocus.com/bid/10048 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16680
Risk Scores
CVSS Score
5.0 / 10
EPSS Score
3.51%
Top 12% most likely to be exploited
Threat Score
21.1 / 100
Data Sources
NVD
EPSS
GitHub