Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2004-1548

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2004-1548
Last Modified 05 Sep 2008 04:41:42
Published 31 Dec 2004 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2004-1548

Summary

Directory traversal vulnerability in the file server in ActivePost Standard 3.1 allows remote authenticated users to upload arbitrary files via a .. (dot dot) in the filename.

Vulnerable Systems

Application

  • Onnuri Infotek Activepost Standard 3.1


References

XF - activepost-dotdot-directory-traversal(17488)

BID - 11244

SECTRACK - 1011406

SECUNIA - 12642

BUGTRAQ - 20040923 Multiple vulnerabilities in ActivePost Standard 3.1

MISC - http://aluigi.altervista.org/adv/actp-adv.txt


Last Updated: 27 May 2016 10:39:05