Directory traversal vulnerability in WebID in RSA Security SecurID 5.0 as used by ACE/Agent for Windows, Windows NT and Windows 2000 allows attackers to access restricted resources via URL-encoded (1) /.. or (2) \.. sequences.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/348040 | third party advisory us government resource |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7397 | vdb entry |
http://www.securityfocus.com/bid/3461 | vdb entry vendor advisory |