RSS   Vulnerabilities for 'Fileup'   RSS

2006-12-31
 
CVE-2006-6865

CWE-Other
 

 
Directory traversal vulnerability in SAFileUpSamples/util/viewsrc.asp in SoftArtisans FileUp (SAFileUp) 5.0.14 allows remote attackers to read arbitrary files via a %c0%ae. (Unicode dot dot) in the path parameter, which bypasses the checks for ".." sequences.

 

 >>> Vendor: Softartisans 2 Products
Fileup
Xfile


Copyright 2024, cxsecurity.com

 

Back to Top