vqSoft vqServer program allows remote attackers to read arbitrary files via a /........../ in the URL, a variation of a .. (dot dot) attack.
References
Link | Resource |
---|---|
http://www.osvdb.org/270 | |
http://www.securityfocus.com/bid/1067 | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/templates/archive.pike?list=1&msg=4.1.20000321084646.0095c7f0%40olga.swip.net | |
http://www.vqsoft.com/vq/server/faqs/dotdotbug.html | URL Repurposed |
Configurations
History
14 Feb 2024, 01:17
Type | Values Removed | Values Added |
---|---|---|
References | (CONFIRM) http://www.vqsoft.com/vq/server/faqs/dotdotbug.html - URL Repurposed |
07 Nov 2023, 01:55
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2000-03-21 05:00
Updated : 2024-02-28 10:24
NVD link : CVE-2000-0240
Mitre link : CVE-2000-0240
CVE.ORG link : CVE-2000-0240
JSON object : View
Products Affected
vqsoft
- vqserver
CWE