Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> CGI abuses >> Snapstream PVS web directory traversal


Vulnerability Assessment Details

Snapstream PVS web directory traversal

Vulnerability Assessment Summary
Snapstream web directory traversal

Detailed Explanation for this Vulnerability Assessment

It is possible to read arbitrary files on the remote
Snapstream PVS server by prepending ../../ in front on the
file name.
It may also be possible to read ../ssd.ini which contains
many informations on the system (base directory, usernames &
passwords).

Solution : Upgrade your software or change it!
Network Security Threat Level: High

Networks Security ID: 3100

Vulnerability Assessment Copyright: This script is Copyright (C) 2002 Michel Arboi

Cables, Connectors

VideoTek DM-145 Demodulator 100500285
$150.0
VideoTek DM-145 Demodulator 100500285 pictureUsed Cisco C2951-VSEC/K9 2951 Security Bundle w SEC Lic
$138.0
Used Cisco C2951-VSEC/K9 2951 Security Bundle w SEC Lic pictureHP ProCurve J9299A 2520G-24-PoE 24-Port Managed PoE Switch/NEW/SOLD AS IS/DEALER
$99.99
HP ProCurve J9299A 2520G-24-PoE 24-Port Managed PoE Switch/NEW/SOLD AS IS/DEALER pictureAvocent DSR4030 16 Port KVM Over IP Switch
$497.06
Avocent DSR4030 16 Port KVM Over IP Switch picture


Discussions

No Discussions have been posted on this vulnerability.