CVE-2005-2792 Information

Description

Directory traversal vulnerability in welcome.php in phpLDAPadmin 0.9.6 and 0.9.7 allows remote attackers to read arbitrary files via a .. (dot dot) in the custom_welcome_page parameter.

Reference

http://marc.info/?l=bugtraq&m=112542447219235&w=2 http://secunia.com/advisories/16617/ http://www.rgod.altervista.org/phpldap.html http://www.securityfocus.com/bid/14695 https://exchange.xforce.ibmcloud.com/vulnerabilities/22103

Share on: