RSS   Vulnerabilities for 'Appeon for powerbuilder'   RSS

2011-01-20
 
CVE-2011-0497

CWE-22
 

 
Directory traversal vulnerability in Sybase EAServer 6.x before 6.3 ESD#2, as used in Appeon, Replication Server Messaging Edition (RSME), and WorkSpace, allows remote attackers to read arbitrary files via "../\" (dot dot forward-slash backslash) sequences in a crafted request.

 
 
CVE-2011-0496

CWE-noinfo
 

 
Unspecified vulnerability in Sybase EAServer 5.x and 6.x before 6.3 ESD#2, as used in Appeon, Replication Server Messaging Edition (RSME), and WorkSpace, allows remote attackers to install arbitrary web services and execute arbitrary code, related to a "design vulnerability."

 

 >>> Vendor: Sybase 14 Products
Powerdynamo
Adaptive server anywhere
Easerver
Adaptive server
Adaptive server enterprise
Pylon anywhere
Financial fusion consumer banking solution
Mobilink
Sql anywhere
Appeon for powerbuilder
Replication server
Sybase workspace
Onebridge mobile data suite
M-business anywhere


Copyright 2017, cxsecurity.com