Directory traversal vulnerability in main.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot dot) attack in the filename parameter.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/153212 | vendor advisory mailing list exploit |
http://www.securityfocus.com/bid/2156 | vendor advisory vdb entry exploit |