aMule Remote Information Disclosure Vulnerability
BID:18145
CVE-2006-2691 | CVE-2006-2692 |Info
aMule Remote Information Disclosure Vulnerability
| Bugtraq ID: | 18145 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 29 2006 12:00AM |
| Updated: | May 30 2006 12:28AM |
| Credit: | This issue was discovered by quinox. |
| Vulnerable: |
aMule aMule 0 |
| Not Vulnerable: |
aMule aMule 2.1.2 |
Discussion
aMule Remote Information Disclosure Vulnerability
aMule is prone to an information-disclosure vulnerability that may allow attackers to access potentially sensitive image, PHP, or HTML files.
aMule versions prior to 2.1.2 are vulnerable to this issue.
aMule is prone to an information-disclosure vulnerability that may allow attackers to access potentially sensitive image, PHP, or HTML files.
aMule versions prior to 2.1.2 are vulnerable to this issue.
Exploit / POC
aMule Remote Information Disclosure Vulnerability
Attackers may use web browsers to exploit this issue.
Attackers may use web browsers to exploit this issue.
Solution / Fix
aMule Remote Information Disclosure Vulnerability
Solution:
The vendor has released version 2.1.2 of aMule to address this issue. Please see the reference section for more information.
aMule aMule 0
Solution:
The vendor has released version 2.1.2 of aMule to address this issue. Please see the reference section for more information.
aMule aMule 0
-
aMule aMule-2.1.2.tar.bz2
http://www.amule.org/files/download.php?file=152
References
aMule Remote Information Disclosure Vulnerability
References:
References:
- aMule Home Page (aMule)
- Changelog 2.1.2 (aMule)