Sybex E-Trainer Software Relative Path Filtering Directory Traversal Vulnerability
BID:4071
Info
Sybex E-Trainer Software Relative Path Filtering Directory Traversal Vulnerability
| Bugtraq ID: | 4071 |
| Class: | Input Validation Error |
| CVE: |
CVE-2002-0262 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 09 2002 12:00AM |
| Updated: | Jul 11 2009 10:56AM |
| Credit: | This vulnerability was discovered and announced by ZeroBreak <[email protected]> on February 9, 2002. |
| Vulnerable: |
Sybex E-Trainer |
| Not Vulnerable: | |
Discussion
Sybex E-Trainer Software Relative Path Filtering Directory Traversal Vulnerability
E-Trainer is a commercially available Computer-Based Training (CBT) software package, maintained and distributed by Sybex. It is available for Microsoft Windows 95, 98, NT 4.0, and 2000 platforms.
The Sybex software package does not sufficiently sanitize input. Upon connecting to the web browser, it is possible for a user to supply a string containing relative paths. In doing so, it is possible for a user to view files with the permissions of the HTTP daemon.
E-Trainer is a commercially available Computer-Based Training (CBT) software package, maintained and distributed by Sybex. It is available for Microsoft Windows 95, 98, NT 4.0, and 2000 platforms.
The Sybex software package does not sufficiently sanitize input. Upon connecting to the web browser, it is possible for a user to supply a string containing relative paths. In doing so, it is possible for a user to view files with the permissions of the HTTP daemon.
Exploit / POC
Sybex E-Trainer Software Relative Path Filtering Directory Traversal Vulnerability
This vulnerability may be exploited with a web browser.
This vulnerability may be exploited with a web browser.
Solution / Fix
Sybex E-Trainer Software Relative Path Filtering Directory Traversal Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.