Vulnerabilities > CVE-1999-1069 - Unspecified vulnerability in Icat Electronic Commerce Suite 3.0.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
Directory traversal vulnerability in carbo.dll in iCat Carbo Server 3.0.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the icatcommand parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | iCat Electronic Commerce Suite 3.0 File Disclosure Vulnerability. CVE-1999-1069. Remote exploits for multiple platform |
id | EDB-ID:20513 |
last seen | 2016-02-02 |
modified | 1997-11-08 |
published | 1997-11-08 |
reporter | Mikael Johansson |
source | https://www.exploit-db.com/download/20513/ |
title | iCat Electronic Commerce Suite 3.0 File Disclosure Vulnerability |
Nessus
NASL family | CGI abuses |
NASL id | ICAT.NASL |
description | The installed version of the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 10112 |
published | 1999-06-22 |
reporter | This script is Copyright (C) 1999-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/10112 |
title | icat carbo.dll icatcommand Parameter Traversal Arbitrary File Access |
code |
|