FAQManager.CGI Directory Traversal Vulnerability
BID:3812
Info
FAQManager.CGI Directory Traversal Vulnerability
| Bugtraq ID: | 3812 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 07 2002 12:00AM |
| Updated: | Jan 07 2002 12:00AM |
| Credit: | This vulnerability was submitted to BugTraq on January 7th, 2001 by Nu Omega Tau <[email protected]>. |
| Vulnerable: |
FAQManager FAQManager.cgi 2.2.6 FAQManager FAQManager.cgi 2.2.5 FAQManager FAQManager.cgi 2.2.4 FAQManager FAQManager.cgi 2.2.3 FAQManager FAQManager.cgi 2.2.2 FAQManager FAQManager.cgi 2.2.1 FAQManager FAQManager.cgi 2.2 FAQManager FAQManager.cgi 2.1.2 FAQManager FAQManager.cgi 2.1.1 FAQManager FAQManager.cgi 2.1 FAQManager FAQManager.cgi 2.0 |
| Not Vulnerable: | |
Discussion
FAQManager.CGI Directory Traversal Vulnerability
FAQManager.cgi is a Perl script for maintaining a FAQ (Frequently Asked Questions) via a web interface. It will run on most Unix/Linux and Microsoft Windows platforms.
FAQManager does not properly filter certain types of input from incoming web requests. It is possible to make a specially crafted web request containing '../' sequences to break out of wwwroot and display arbitrary web-readable files.
FAQManager.cgi is a Perl script for maintaining a FAQ (Frequently Asked Questions) via a web interface. It will run on most Unix/Linux and Microsoft Windows platforms.
FAQManager does not properly filter certain types of input from incoming web requests. It is possible to make a specially crafted web request containing '../' sequences to break out of wwwroot and display arbitrary web-readable files.
Exploit / POC
FAQManager.CGI Directory Traversal Vulnerability
This issue may be exploited with a web browser.
This issue may be exploited with a web browser.
Solution / Fix
FAQManager.CGI Directory Traversal Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.