| |||||||||||||
| ID de Prueba: | 1.3.6.1.4.1.25623.1.0.800197 |
| Categoría: | FTP |
| Título: | QuickShare File Share FTP Server Directory Traversal Vulnerability |
| Resumen: | Try Directory Traversal Attack on QuickShare File Share FTP server |
| Descripción: | Overview: The host is running QuickShare File Share FTP Server and is prone to directory traversal vulnerability. Vulnerability Insight: The flaw is due to an error while handling certain requests containing 'dot dot' sequences (..) and back slashes in URL, which can be exploited to download arbitrary files from the host system via directory traversal attack. Impact: Successful exploitation will allow attackers to read arbitrary files on the affected application. Impact Level: Application Affected Software/OS: QuickShare File Share 1.2.1 Fix: No solution or patch is available as of 4th February, 2011. Information regarding this issue will updated once the solution details are available. For updates refer to http://www.quicksharehq.com/ References: http://www.exploit-db.com/exploits/16105/ http://securityreason.com/exploitalert/9927 http://packetstormsecurity.org/files/view/98137/quicksharefs-traverse.txt |
| Copyright | Copyright (C) 2011 Greenbone Networks GmbH |
| Esta es sólo una de 32582 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |
|