PT-2005-2109 · Maxthon · Maxthon

Published

2005-04-13

·

Updated

2017-07-11

·

CVE-2005-1090

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Maxthon versions 1.2.0 through 1.2.1
Description A directory traversal issue exists in the readFile and writeFile API, allowing remote attackers to read or write arbitrary files.
Recommendations For versions 1.2.0 and 1.2.1, consider disabling the readFile and writeFile API until a patch is available to prevent exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1090

Affected Products

Maxthon