Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-2102

Overview

Vulnerability Score 7.8 7.8
CVE Id CVE-2006-2102
Last Modified 07 Mar 2011 09:35:15
Published 29 Apr 2006 06:02:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2006-2102

Summary

Directory traversal vulnerability in PowerISO 2.9 allows remote attackers to write arbitrary files via a .. (dot dot) in a filename in an ISO image.

Vulnerable Systems

Application

  • Poweriso 2.9


References

VUPEN - ADV-2006-1570

BUGTRAQ - 20060428 WinISO/UltraISO/MagicISO/PowerISO Directory Traversal Vulnerability

MISC - http://secway.org/advisory/AD20060428.txt

SECUNIA - 19858

XF - iso-dotdot-directory-traversal(26140)

BID - 17726

SECTRACK - 1016008

SREASON - 815


Last Updated: 27 May 2016 10:42:20