Vulnerabilities > CVE-2004-1612 - Remote vulnerability in Saleslogix Corporation Saleslogix 2000.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
saleslogix-corporation
exploit available

Summary

Directory traversal vulnerability in SalesLogix 6.1 allows remote attackers to upload arbitrary files via a .. (dot dot) in a ProcessQueueFile request.

Vulnerable Configurations

Part Description Count
Application
Saleslogix_Corporation
1

Exploit-Db

  • descriptionSLX Server 6.1 Arbitrary File Creation Exploit (PoC). CVE-2004-1612. Remote exploit for windows platform
    idEDB-ID:583
    last seen2016-01-31
    modified2004-10-18
    published2004-10-18
    reporterCarl Livitt
    sourcehttps://www.exploit-db.com/download/583/
    titleSLX Server 6.1 - Arbitrary File Creation Exploit PoC
  • descriptionBest Software SalesLogix 2000.0 Multiple Remote Vulnerabilities. CVE-2004-1612. Remote exploit for windows platform
    idEDB-ID:24688
    last seen2016-02-02
    modified2004-10-18
    published2004-10-18
    reporterCarl Livitt
    sourcehttps://www.exploit-db.com/download/24688/
    titlebest software saleslogix 2000.0 - Multiple Vulnerabilities