Ex Libris Aleph File Access Vulnerability
BID:263
Info
Ex Libris Aleph File Access Vulnerability
| Bugtraq ID: | 263 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 21 1999 12:00AM |
| Updated: | May 21 1999 12:00AM |
| Credit: | This vulnerability as published to the BUGTRAQ mailing list by Jakub Urbanec <[email protected]>. |
| Vulnerable: |
Ex Libris Aleph 3.25 |
| Not Vulnerable: | |
Discussion
Ex Libris Aleph File Access Vulnerability
Ex Libris' Aleph is an integrated library system. A vulnerability in the web server component of the Aleph system version 3.25 and higher allow any remote user to view any files on the system that the user id under which the aleph system is running can access.
Ex Libris' Aleph is an integrated library system. A vulnerability in the web server component of the Aleph system version 3.25 and higher allow any remote user to view any files on the system that the user id under which the aleph system is running can access.
Exploit / POC
Ex Libris Aleph File Access Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Ex Libris Aleph File Access Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Ex Libris Aleph File Access Vulnerability
References:
References: