Django Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability - CVE-2011-0698 - Vulnerability Database

Django Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability - CVE-2011-0698

High
Reference: CVE-2011-0698
Title: Django Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) Vulnerability
Overview:

Directory traversal vulnerability in Django 1.1.x before 1.1.4 and 1.2.x before 1.2.5 on Windows might allow remote attackers to read or execute files via a / (slash) character in a key in a session cookie related to session replays.