Описание
Multiple directory traversal vulnerabilities in Cybozu Office before 6.6 Build 1.3 and Share 360 before 2.5 Build 0.3 allow remote authenticated users to read arbitrary files via a .. (dot dot) sequence via the id parameter in (1) scripts/cbag/ag.exe or (2) scripts/s360v2/s360.exe.
Multiple directory traversal vulnerabilities in Cybozu Office before 6.6 Build 1.3 and Share 360 before 2.5 Build 0.3 allow remote authenticated users to read arbitrary files via a .. (dot dot) sequence via the id parameter in (1) scripts/cbag/ag.exe or (2) scripts/s360v2/s360.exe.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-4490
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28591
- http://cybozu.co.jp/products/dl/notice_060825
- http://jvn.jp/jp/JVN%2390420168/index.html
- http://secunia.com/advisories/21618
- http://secunia.com/advisories/21623
- http://securitytracker.com/id?1016759
- http://vuln.sg/cybozu-en.html
- http://www.osvdb.org/28261
- http://www.osvdb.org/28262
EPSS
CVE ID
Связанные уязвимости
Multiple directory traversal vulnerabilities in Cybozu Office before 6.6 Build 1.3 and Share 360 before 2.5 Build 0.3 allow remote authenticated users to read arbitrary files via a .. (dot dot) sequence via the id parameter in (1) scripts/cbag/ag.exe or (2) scripts/s360v2/s360.exe.
EPSS