netauth.cgi program in Netwin Netauth 4.2e and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/5090 | vdb entry |
http://netwinsite.com/netauth/updates.htm | |
http://www.securityfocus.com/bid/1587 | exploit vdb entry patch vendor advisory |
http://www.securityfocus.com/templates/archive.pike?list=1&msg=NEBBJCLKGNOGCOIOBJNAGEHLCPAA.marc%40eeye.com | mailing list |