SysCP WebFTP Module Local File Include Vulnerability
BID:16175
Info
SysCP WebFTP Module Local File Include Vulnerability
| Bugtraq ID: | 16175 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 09 2006 12:00AM |
| Updated: | Jan 09 2006 12:00AM |
| Credit: | Discovered by Thomas Henlich. |
| Vulnerable: |
Nortel Networks Optera 1.2.6 |
| Not Vulnerable: | |
Discussion
SysCP WebFTP Module Local File Include Vulnerability
SysCP WebFTP module is prone to a local file include vulnerability.
This may facilitate the unauthorized viewing of files and unauthorized execution of local scripts.
WebFTP 1.2.6 is reportedly vulnerable to this issue. Other versions may be affected as well.
SysCP WebFTP module is prone to a local file include vulnerability.
This may facilitate the unauthorized viewing of files and unauthorized execution of local scripts.
WebFTP 1.2.6 is reportedly vulnerable to this issue. Other versions may be affected as well.
Exploit / POC
SysCP WebFTP Module Local File Include Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
SysCP WebFTP Module Local File Include Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
SysCP WebFTP Module Local File Include Vulnerability
References:
References:
- Home Page (SysCP)
- SysCP Modules (SysCP)