Directory traversal vulnerability in the Crystal Report component (rptserver.asp) in Trend Micro ServerProtect Management Console 5.58, as used in Control Manager 2.5 and 3.0 and Damage Cleanup Server 1.1, and possibly earlier versions, allows remote attackers to read arbitrary files via the IMAGE parameter.
Link | Tags |
---|---|
http://secunia.com/advisories/18038 | third party advisory |
http://securitytracker.com/id?1015358 | vdb entry |
http://www.securityfocus.com/bid/15867 | vdb entry |
http://www.idefense.com/application/poi/display?id=352&type=vulnerabilities | third party advisory vendor advisory |
http://www.osvdb.org/21770 | vdb entry |
http://securityreason.com/securityalert/258 | third party advisory |
http://www.vupen.com/english/advisories/2005/2907 | vdb entry |