Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 allows remote attackers or local users to read arbitrary files via "..\\", "..\", and similar dot dot sequences in the URL.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/10918 | patch vendor advisory vdb entry exploit |
http://marc.info/?l=bugtraq&m=109225567212978&w=2 | mailing list |
http://packetstormsecurity.nl/0408-exploits/clearswift.txt | vendor advisory exploit |
http://marc.info/?l=bugtraq&m=109224211512029&w=2 | mailing list |
http://secunia.com/advisories/12273 | third party advisory vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16960 | vdb entry |