{"id":"CVE-2019-25087","details":"A vulnerability was found in RamseyK httpserver. It has been rated as critical. This issue affects the function ResourceHost::getResource of the file src/ResourceHost.cpp of the component URI Handler. The manipulation of the argument uri leads to path traversal: '../filedir'. The attack may be initiated remotely. The name of the patch is 1a0de56e4dafff9c2f9c8f6b130a764f7a50df52. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-216863.","modified":"2026-07-08T20:57:04.190488Z","published":"2022-12-27T09:15:09.730Z","database_specific":{"unresolved_ranges":[{"vendor_product":"httpserver_project:httpserver","cpes":["cpe:2.3:a:httpserver_project:httpserver:*:*:*:*:*:*:*:*"],"extracted_events":[{"fixed":"2019-09-08"}],"source":"CPE_RANGE"}]},"references":[{"type":"ADVISORY","url":"https://vuldb.com/?ctiid.216863"},{"type":"ADVISORY","url":"https://vuldb.com/?id.216863"},{"type":"FIX","url":"https://github.com/RamseyK/httpserver/commit/1a0de56e4dafff9c2f9c8f6b130a764f7a50df52"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/ramseyk/httpserver","events":[{"introduced":"0"},{"fixed":"1a0de56e4dafff9c2f9c8f6b130a764f7a50df52"}],"database_specific":{"source":"REFERENCES"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-25087.json","vanir_signatures_modified":"2026-07-08T20:57:04Z","vanir_signatures":[{"target":{"file":"src/ResourceHost.cpp"},"deprecated":false,"digest":{"line_hashes":["239344838991337998730483513283856843230","237764927854374465121689216039023787498","276416710966700877610110695182206018719"],"threshold":0.9},"id":"CVE-2019-25087-b03e62f1","signature_type":"Line","signature_version":"v1","source":"https://github.com/ramseyk/httpserver/commit/1a0de56e4dafff9c2f9c8f6b130a764f7a50df52"},{"id":"CVE-2019-25087-eee495f5","signature_type":"Function","signature_version":"v1","source":"https://github.com/ramseyk/httpserver/commit/1a0de56e4dafff9c2f9c8f6b130a764f7a50df52","target":{"file":"src/ResourceHost.cpp","function":"ResourceHost::getResource"},"deprecated":false,"digest":{"function_hash":"308880837278410048768620784529197281780","length":428}}]}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"}]}