{"id":"CVE-2019-16903","details":"Platinum UPnP SDK 1.2.0 allows Directory Traversal in Core/PltHttpServer.cpp because it checks for /.. where it should be checking for ../ instead.","modified":"2026-03-14T09:32:12.266772Z","published":"2019-09-26T11:15:13.627Z","references":[{"type":"ADVISORY","url":"https://github.com/plutinosoft/Platinum/issues/22"},{"type":"EVIDENCE","url":"http://www.iwantacve.cn/index.php/archives/349/"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/plutinosoft/platinum","events":[{"introduced":"0"},{"last_affected":"cfd78d869a55fa429117d2d55b26472cc6f445c5"}],"database_specific":{"versions":[{"introduced":"0"},{"last_affected":"1.2.0"}]}}],"versions":["1.0.9","1.0.9.2","1.1.0","1.1.1","1.2.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-16903.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"}]}