Vulnerabilities > CVE-2001-1209 - Unspecified vulnerability in ABE Timmerman Zml.Cgi 0.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Abe Timmerman zml.cgi File Disclosure Vulnerability. CVE-2001-1209. Remote exploit for cgi platform |
id | EDB-ID:21194 |
last seen | 2016-02-02 |
modified | 2001-12-31 |
published | 2001-12-31 |
reporter | blackshell |
source | https://www.exploit-db.com/download/21194/ |
title | Abe Timmerman zml.cgi File Disclosure Vulnerability |
Nessus
NASL family | CGI abuses |
NASL id | ZML_CGI_TRAVERSAL.NASL |
description | ZML.cgi is vulnerable to a directory traversal attack. It enables a remote attacker to view any file on the computer with the privileges of the cgi/httpd user. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 10830 |
published | 2002-01-17 |
reporter | This script is Copyright (C) 2002-2018 H D Moore & Drew Hintz ( http://guh.nu ) |
source | https://www.tenable.com/plugins/nessus/10830 |
title | zml.cgi Directory Traversal |
code |
|
References
- http://archives.neohapsis.com/archives/vulnwatch/2001-q4/0086.html
- http://archives.neohapsis.com/archives/vulnwatch/2001-q4/0086.html
- http://seclists.org/bugtraq/2001/Dec/0306.html
- http://seclists.org/bugtraq/2001/Dec/0306.html
- http://www.iss.net/security_center/static/7751.php
- http://www.iss.net/security_center/static/7751.php
- http://www.jero.cc/zml/zml.html
- http://www.jero.cc/zml/zml.html
- http://www.securityfocus.com/bid/3759
- http://www.securityfocus.com/bid/3759