Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6317 (BarracudaDrive Web Server Home Server)

BugsAlert Home > CVE-2007-6317 (BarracudaDrive Web Server Home Server)
 
 

Multiple directory traversal vulnerabilities in BarracudaDrive Web Server before 3.8 allow (1) remote attackers to read arbitrary files via certain ..\ (dot dot backslash) sequences in the URL path, or (2) remote authenticated users to delete arbitrary files or create arbitrary directories via a ..\ (dot dot backslash) sequence in the dir parameter to /drive/c/bdusers/USER/.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6317

Learn more about CVE-2007-6317 (BarracudaDrive Web Server Home Server)
 

Related Items

      SEO Manipulation Begins for Super Bowl Malware Campaign

      FrSIRT - HP Tru64 UNIX SFTP Server Code Execution and DoS Vulnerabilities

      CuteFlow Cross-Site Scripting and SQL Injection

      CVE-2008-1566 (Applications Manager)

      Holiday Tally: Storm Social-Engineering Manages a >200% Increase in Size

      FrSIRT - Slackware Security Update Fixes KDE Privilege Escalation Issues

      TSPY_BZUB.BTX

 

Pixel