Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

SoftArtisans FileUp Viewsrc.ASP Directory Traversal Vulnerability

FileUp is prone to a directory-traversal vulnerability because it fails to properly sanitize user-supplied input.

An attacker can exploit this vulnerability to retrieve the contents of arbitrary files from the vulnerable system in the context of the affected application. Information obtained may aid in further attacks.

FileUp 5.0.14 is vulnerable to this issue; other versions may also be affected.

Note that the affected 'viewsrc.asp' script is a sample script available with the application and may not be installed by default.







 

Privacy Statement
Copyright 2008, SecurityFocus