Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
WinSCP < 4.04 url protocol handler flaw Sep 13 2007 11:22AM
Kender Security gmail com
-Affected products: WinSCP 4.03 and older

-Details:
By default WinSCP installs url protocol handlers for the scp:// and sftp:// protocols.
These could be used by malicious web content to automatically upload any file from the local system to a remote server, or automatically download files from a ...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus