Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-0571

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2001-0571
Last Modified 05 Sep 2008 04:24:26
Published 22 Aug 2001 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2001-0571

Summary

Directory traversal vulnerability in the web server for (1) Elron Internet Manager (IM) Message Inspector and (2) Anti-Virus before 3.0.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the requested URL.

Vulnerable Systems

Application

  • Elron Im Anti Virus 3.0.3

  • Elron Im Message Inspector 3.0.3


References

BID - 2520

BID - 2519

BUGTRAQ - 20010326 http://archives.neohapsis.com/archives/bugtraq/2001-03/0345.html

BUGTRAQ - 20010323 Elron IM Products Vulnerability

BUGTRAQ - 20010406 http://archives.neohapsis.com/archives/bugtraq/2001-03/0345.html


Last Updated: 27 May 2016 10:36:18