Nessus Plugin #10355

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

vqServer web traversal vulnerability

Family:
Remote file access
Category:
infos
Copyright:
This script is Copyright (C) 2000 SecuriTeam
Summary:
Detect vqServer's web traversal bug
Version:
$Revision: 1.18 $
Cve_id:
CVE-2000-0240
Bugtraq_id:
1067
Xrefs:
-
Description:

vqSoft's vqServer web server (version 1.9.9 and below) has been detected.
This version contains a security vulnerability that allows attackers to request any file,
even if it is outside the HTML directory scope.

For more information:
http://www.securiteam.com/windowsntfocus/Some_Web_servers_are_still_vulnerable_to_the_dotdotdot_vulnerability.html

Solution:
Upgrade to the latest version, available from: http://www.vqsoft.com.

Risk factor : Medium
Generiert am 27.04.2005 um 18:49:54 Uhr.