CVE-2015-1847: Appserver

High severity, CVSS 7.5. EPSS: 2.1% chance of exploitation in the next 30 days.

Directory traversal vulnerability in the web request/response interface in Appserver before 1.0.3 allows remote attackers to read normally inaccessible files via a .. (dot dot) in a crafted URL.

Affected products

  • Appserver Appserver: up to and including 1.0.2

Published 2017-07-25. Last modified 2026-06-17.