Directory traversal vulnerability in Sun Chili!Soft ASP on multiple Unixes allows a remote attacker to read arbitrary files above the web root via a '..' (dot dot) attack in the sample script 'codebrws.asp'.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-02/0378.html | mailing list vendor advisory |
http://archives.neohapsis.com/archives/bugtraq/2001-02/0443.html | mailing list patch vendor advisory |