Directory traversal vulnerability in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote malicious FTP servers to overwrite arbitrary files via .. (dot dot) sequences in filenames returned from a LIST command.
Link | Tags |
---|---|
http://secunia.com/advisories/13704 | patch vendor advisory third party advisory |
http://www.7a69ezine.org/node/view/176 | vendor advisory exploit |
http://marc.info/?l=bugtraq&m=110461358930103&w=2 | mailing list |