CVE-2017-16198: Ritp Project Ritp
High severity, CVSS 7.5. EPSS: 2% chance of exploitation in the next 30 days.
ritp is a static web server. ritp is vulnerable to a directory traversal issue whereby an attacker can gain access to the file system by placing ../ in the URL. Access is restricted to files with a file extension, so files such as /etc/passwd are not accessible.
Affected products
- Ritp Project Ritp: version 1.0.2 only; version 1.0.3 only; version 1.0.4 only; version 1.0.5 only
Published 2018-06-07. Last modified 2026-06-17.