Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Software602 602 Lan Suite Arbitrary File Upload Vulnerability

602 Lan Suite 2004 is reportedly affected by a vulnerability regarding the uploading of file attachments. This issue is due to the application failing to properly sanitize the names of file attachments before upload. A malicious user could exploit this vulnerability using directory traversal attacks to upload a file to an arbitrary location accessible by the affected server.

This vulnerability could lead to the execution of a malicious file on the server hosting the application.

602 Lan Suite 2004 version 2004.0.04.1221 is reportedly vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2008, SecurityFocus