PT-2002-2325 · Unknown · Bm Classifieds

Publicado

2002-01-09

·

Atualizado

2008-09-10

·

CVE-2002-1600

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions My Classifieds version 1.3 and earlier
Description A directory traversal issue exists, allowing remote attackers to overwrite arbitrary files by manipulating the category parameter in the classifieds.cgi script.
Recommendations For versions prior to 1.3, update to version 1.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the classifieds.cgi script until the update is applied. Avoid using the category parameter in the classifieds.cgi script until the issue is resolved.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2002-1600

Produtos afetados

Bm Classifieds