Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-2079
Description:DataTrack System 3.5 allows remote attackers to bypass intended restrictions on file extensions, and read arbitrary files, via a trailing backslash in a URI, as demonstrated by (1) web.config\ and (2) .ascx\ files.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-2079
http://cross-site-scripting.blogspot.com/2010/05/datatrack-system-35-persistent-xss.html
http://packetstormsecurity.org/1005-exploits/datatrackserver35-xss.txt
XForce ISS Database: datatrack-backslash-info-disc(58735)
https://exchange.xforce.ibmcloud.com/vulnerabilities/58735




© 1998-2025 E-Soft Inc. All rights reserved.