CVE-2004-2380 Information

Description

Directory traversal vulnerability in postfile.exe for Twilight Utilities Web Server 2.0.0.0 allows remote attackers to write arbitrary files via a .. (dot dot) in the attfile parameter.

Reference

http://members.lycos.co.uk/r34ct/main/TW-webserver/TWwebserver.txt http://www.securitytracker.com/alerts/2004/Mar/1009443.html https://exchange.xforce.ibmcloud.com/vulnerabilities/15523

Share on: