Directory traversal vulnerability in edit_action.cgi of Webmin Directory 0.91 allows attackers to gain privileges via a '..' (dot dot) in the argument.
Link | Tags |
---|---|
http://www.iss.net/security_center/static/7711.php | vdb entry vendor advisory |
http://www.securityfocus.com/archive/1/245980 | mailing list vendor advisory |
http://www.securityfocus.com/bid/3698 | exploit vdb entry patch vendor advisory |
http://marc.info/?l=webmin-l&m=100865390306103&w=2 | mailing list |