Directory traversal vulnerability in Avi Alkalay contribute.cgi (aka contribute.pl), dated 16 Jun 2002, allows remote attackers to overwrite arbitrary files via ".." sequences in the contribdir variable.
References
Link | Resource |
---|---|
http://www.cirt.net/advisories/alkalay.shtml | Vendor Advisory |
http://www.osvdb.org/19522 | Exploit |
Configurations
Information
Published : 2005-09-28 15:03
Updated : 2008-09-05 13:53
NVD link : CVE-2005-3097
Mitre link : CVE-2005-3097
JSON object : View
CWE
Products Affected
avi_alkalay
- contribute.cgi