Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

SiteWare Editor Desktop Directory Traversal Vulnerability

Screaming Media is a provider for custom web content. SiteWare Editor Desktop is the web-based administration tool for managing Screaming Media content.

SiteWare Editor Desktop is prone to directory traversal attacks which can lead to disclosure of arbitrary webserver-readable files on the vulnerable host. This is due to the fact that the software does not filter '../' character sequences from HTTP Requests.







 

Privacy Statement
Copyright 2009, SecurityFocus