CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / november, 2004 / Elektropost EPiServer ASP/COM directory traversal vulnerability 

Elektropost EPiServer ASP/COM directory traversal vulnerabil

Elektropost EPiServer ASP/COM directory traversal vulnerabil

Date Discovered: December 14, 2003
Date Published: November 2, 2004
Last Updated: November 2, 2004

Vulnerability Description

Vulnerability ID:         31650
Discovered by:            Babbelbubbel
Exploitable Locally:     No
Exploitable Remotely: Yes
Impact:                        Remote attackers can gain sensitive information.
Root Cause:                 Software Vulnerability

Elektropost EPiServer contains a vulnerability that can allow remote attackers to gain sensitive information. The vulnerability is due to improper filtering of user-supplied input. Attackers can exploit this vulnerability to be able to traverse directories and gain sensitive information.

 

 

More information on CA Vulnerability Information Center
http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=31650

Computer Associates – the Trusted Source of Security Knowledge

 

Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel