Описание
Directory traversal vulnerability in index.php in Alstrasoft Epay Pro 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the read parameter.
Directory traversal vulnerability in index.php in Alstrasoft Epay Pro 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the read parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2005-3026
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22313
- http://lists.grok.org.uk/pipermail/full-disclosure/2005-September/037225.html
- http://marc.info/?l=bugtraq&m=112714879101323&w=2
- http://marc.info/?l=bugtraq&m=112716394925851&w=2
- http://securityreason.com/securityalert/13
- http://www.h4cky0u.org/advisories/HYA-2005-008-alstrasoft-epay-pro.txt
- http://www.securityfocus.com/bid/14871
EPSS
Процентиль: 88%
0.03628
Низкий
CVE ID
Связанные уязвимости
nvd
почти 21 год назад
Directory traversal vulnerability in index.php in Alstrasoft Epay Pro 2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the read parameter.
EPSS
Процентиль: 88%
0.03628
Низкий