PT-2004-3456 · Sambar · Sambar Server

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-2565

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Sambar Server version 6.1 Beta 2
Description The issue allows remote authenticated users to read arbitrary files due to multiple directory traversal vulnerabilities. This can be achieved by exploiting the file parameter in "showini.asp" with a ".." (dot dot backslash) or by using an absolute path with a drive letter in the log parameter to "showlog.asp".
Recommendations For Sambar Server version 6.1 Beta 2, consider restricting access to the showini.asp and showlog.asp pages until a patch is available. As a temporary workaround, avoid using the file parameter in "showini.asp" and the log parameter in "showlog.asp" with untrusted input.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-2565

Affected Products

Sambar Server