CVE-2005-0854 Information

Description

betaparticle blog (bp blog) posisbly before version 4 allows remote attackers to bypass authentication and (1) upload files via a direct request to upload.asp or (2) delete files via a direct request to myFiles.asp.

Reference

http://blog.betaparticle.com/template_permalink.asp?id=68 http://seclists.org/lists/bugtraq/2005/Mar/0360.html http://secunia.com/advisories/14668 http://www.securityfocus.com/bid/12861 https://exchange.xforce.ibmcloud.com/vulnerabilities/19781

Share on: