Directory traversal vulnerability in Xinkaa 1.0.3 and earlier allows remote attackers to read arbitrary files via (1) ../ and (2) ..\ characters in an HTTP request.
Link | Tags |
---|---|
http://aluigi.altervista.org/adv/xinkaa-adv.txt | vendor advisory |
http://secunia.com/advisories/14349 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/12606 | vdb entry |
http://www.vupen.com/english/advisories/2005/0189 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/19404 | vdb entry |