Directory traversal vulnerability in the web server for (1) Elron Internet Manager (IM) Message Inspector and (2) Anti-Virus before 3.0.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the requested URL.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-03/0382.html | |
http://marc.info/?l=bugtraq&m=98538867727489&w=2 | |
http://marc.info/?l=bugtraq&m=98567864203963&w=2 | |
http://www.securityfocus.com/bid/2519 | Exploit Patch Vendor Advisory |
http://www.securityfocus.com/bid/2520 | Exploit Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2001-08-22 04:00
Updated : 2024-02-28 10:24
NVD link : CVE-2001-0571
Mitre link : CVE-2001-0571
CVE.ORG link : CVE-2001-0571
JSON object : View
Products Affected
elron
- im_anti_virus
- im_message_inspector
CWE