SMART Board Whiteboard Directory Traversal Vulnerability

2009-03-09 / 2009-03-10
Credit: ddivulnalert
Risk: Medium
Local: No
Remote: Yes
CVE: N/A
CWE: N/A

Title ----- DDIVRT-2009-22 SMART Board Whiteboard Directory Traversal Vulnerability Severity -------- High Date Discovered --------------- January 19th, 2009 Discovered By ------------- Digital Defense, Inc. Vulnerability Research Team Credit: David Marshall and r_at_b13$ Vulnerability Description ------------------------- A directory traversal condition exists in SMART Web Server whereby arbitrary files may be retrieved from this host's file system. Attackers may leverage this issue to gain access to sensitive information stored on this host. Solution Description -------------------- No patch is available at this time. Tested Systems / Software (with versions) ------------------------------------------ Windows XP, SMART Board Whiteboard Vendor Contact -------------- Vendor Name: SMART Technologies ULC Vendor Website: http://www2.smarttech.com/

References:

http://seclists.org/bugtraq/2009/Mar/0086.html


Vote for this issue:
50%
50%


 

Thanks for you vote!


 

Thanks for you comment!
Your message is in quarantine 48 hours.

Comment it here.


(*) - required fields.  
{{ x.nick }} | Date: {{ x.ux * 1000 | date:'yyyy-MM-dd' }} {{ x.ux * 1000 | date:'HH:mm' }} CET+1
{{ x.comment }}

Copyright 2024, cxsecurity.com

 

Back to Top