Acuma Acusend Unauthorized File Access Vulnerability
BID:6048
Info
Acuma Acusend Unauthorized File Access Vulnerability
| Bugtraq ID: | 6048 |
| Class: | Design Error |
| CVE: |
CVE-2002-1538 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 25 2002 12:00AM |
| Updated: | Jul 11 2009 06:06PM |
| Credit: | Discovery of this issue is credited to "David Wray" <[email protected]>. |
| Vulnerable: |
Acuma Acusend 4.0 |
| Not Vulnerable: |
Acuma Acusend 5.0 |
Discussion
Acuma Acusend Unauthorized File Access Vulnerability
Acuma Acusend is prone to an issue which may allow authenticated users to access sensitive files owned by other users.
This is possible if a malicious user can guess the URI of sensitive files. URIs are derived from time and date and reportedly may be anticipated by an attacker.
Acuma Acusend is prone to an issue which may allow authenticated users to access sensitive files owned by other users.
This is possible if a malicious user can guess the URI of sensitive files. URIs are derived from time and date and reportedly may be anticipated by an attacker.
Exploit / POC
Acuma Acusend Unauthorized File Access Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.