CVE-2004-0465
N/A
N/A
Summary
Directory traversal vulnerability in jretest.html in WebConnect 6.5 and 6.4.4, and possibly earlier versions, allows remote attackers to read keys within arbitrary INI formatted files via "..//" sequences in the WCP_USER parameter.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.kb.cert.org/vuls/id/628411
- http://www.kb.cert.org/vuls/id/JSHA-69HVPK
- http://www.cirt.dk/advisories/cirt-29-advisory.pdf
- http://marc.info/?l=bugtraq&m=110910838600145&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19394
- http://secunia.com/advisories/14006/
References
- http://www.kb.cert.org/vuls/id/628411
- http://www.kb.cert.org/vuls/id/JSHA-69HVPK
- http://www.cirt.dk/advisories/cirt-29-advisory.pdf
- http://marc.info/?l=bugtraq&m=110910838600145&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/19394
- http://secunia.com/advisories/14006/
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.