| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.801496 |
| Category: | Web Servers |
| Title: | Ecava IntegraXor Directory Traversal Vulnerability |
| Summary: | Check Ecava IntegraXor is vulnerable to Directory Traversal Attack |
| Description: | Overview: This host is running Ecava IntegraXor and is prone Directory Traversal vulnerability. Vulnerability Insight: The flaw is due to 'open' request, which can be used by an attacker to download files from the disk where the server is installed. Impact: Successful exploitation will allow attackers to download files from the disk where the server is installed through directory traversal attacks. Impact Level: Application. Affected Software: Ecava IntegraXor version 3.6.4000.0 and prior Fix: No solution or patch is available as of 22nd December, 2010. Information regarding this issue will be updated once the solution details are available. For updates refer to http://www.ecava.com/index.htm References: http://www.exploit-db.com/exploits/15802/ |
| Cross-Ref: |
BugTraq ID: 45535 Common Vulnerability Exposure (CVE) ID: CVE-2010-4598 http://www.exploit-db.com/exploits/15802 http://aluigi.org/adv/integraxor_1-adv.txt http://www.us-cert.gov/control_systems/pdf/ICS-ALERT-10-355-01.pdf CERT/CC vulnerability note: VU#979776 http://www.kb.cert.org/vuls/id/979776 http://www.securityfocus.com/bid/45535 http://secunia.com/advisories/42730 http://www.vupen.com/english/advisories/2010/3304 |
| Copyright | Copyright (C) 2010 Greenbone Networks GmbH |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|