ChangshinSoft EZTrans Server Download.PHP Directory Traversal Vulnerability
BID:8155
Info
ChangshinSoft EZTrans Server Download.PHP Directory Traversal Vulnerability
| Bugtraq ID: | 8155 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 09 2003 12:00AM |
| Updated: | Jul 09 2003 12:00AM |
| Credit: | Discovery credited to SSR Team. |
| Vulnerable: |
ChangshinSoft ezTrans Server |
| Not Vulnerable: | |
Discussion
ChangshinSoft EZTrans Server Download.PHP Directory Traversal Vulnerability
It has been reported that a problem in ChangshinSoft ezTrans Server exists in the download.php script that may allow an attacker to view arbitrary files. This may result in the disclosure of potentially sensitive information.
It has been reported that a problem in ChangshinSoft ezTrans Server exists in the download.php script that may allow an attacker to view arbitrary files. This may result in the disclosure of potentially sensitive information.
Solution / Fix
ChangshinSoft EZTrans Server Download.PHP Directory Traversal Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.