Directory traversal vulnerability in Entrust GetAccess allows remote attackers to read arbitrary files via a .. (dot dot) in the locale parameter to (1) helpwin.gas.bat or (2) AboutBox.gas.bat.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-11/0022.html | patch vendor advisory mailing list |
http://marc.info/?l=bugtraq&m=100498111712723&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7474 | vdb entry |
http://www.securityfocus.com/bid/3508 | vdb entry |
http://www.kb.cert.org/vuls/id/243243 | third party advisory us government resource |