CVE-2011-1409

Frams's Fast File EXchange (F*EX, aka fex) 20100208, and possibly other versions before 20110610, allows remote attackers to bypass authentication and upload arbitrary files via a request that lacks an authentication ID.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ulli_horlacher:fex:20100208:*:*:*:*:*:*:*

History

21 Nov 2024, 01:26

Type Values Removed Values Added
References () http://fex.rus.uni-stuttgart.de/fex.html - Patch () http://fex.rus.uni-stuttgart.de/fex.html - Patch
References () http://secunia.com/advisories/44940 - Vendor Advisory () http://secunia.com/advisories/44940 - Vendor Advisory
References () http://www.debian.org/security/2011/dsa-2259 - () http://www.debian.org/security/2011/dsa-2259 -
References () http://www.securityfocus.com/bid/48239 - () http://www.securityfocus.com/bid/48239 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/68005 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/68005 -

Information

Published : 2011-06-24 20:55

Updated : 2024-11-21 01:26


NVD link : CVE-2011-1409

Mitre link : CVE-2011-1409

CVE.ORG link : CVE-2011-1409


JSON object : View

Products Affected

ulli_horlacher

  • fex
CWE
CWE-287

Improper Authentication