RSS   Vulnerabilities for 'File upload manager'   RSS

2005-06-12
 
CVE-2005-1957

 

 
mtnpeak.net File Upload Manager does not properly check user authentication for certain actions, which allows remote attackers to provide a modified base64-encoded file parameter and (1) read arbitrary files via the "view" action or (2) delete arbitrary files via the del action.

 


Copyright 2024, cxsecurity.com

 

Back to Top