CVE-2004-2121

UNKNOWN
5.0CVSS
Published: 2004-12-31
Updated: 2025-04-03
AI Analysis

Description

Multiple directory traversal vulnerabilities in Borland Web Server (BWS) 1.0b3 and earlier allow remote attackers to read and download arbitrary files via (1) multi-dot "......" sequences, or (2) "%5c%2e%2e" (encoded "\..") sequences, in the URL.

CVSS Metrics

Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Access Vector
network
Access Cmplx
low
Auth
none
Confidentiality
partial
Integrity
none
Availability
none
Weaknesses
NVD-CWE-Other

Metadata

Primary Vendor
BORLAND_SOFTWARE
Published
12/31/2004
Last Modified
4/3/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

borland_software : web_server_for_corel_paradox

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2004-2121 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com