Vulnerabilities > CVE-2004-1743 - Unspecified vulnerability in EFS Software EFS web Server 1.2/1.25

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
efs-software
nessus

Summary

Easy File Sharing (EFS) Webserver 1.25 allows remote attackers to view arbitrary files via an HTTP request for the disk_c virtual folder.

Vulnerable Configurations

Part Description Count
Application
Efs_Software
2

Nessus

NASL familyWeb Servers
NASL idEFS_ACL_BYPASS.NASL
descriptionThe remote host is running Easy File Sharing Web Server, a web server package designed to facilitate file sharing. There is a flaw in the remote version of this software that could allow a remote attacker to read arbitrary files on the remote host.
last seen2020-06-01
modified2020-06-02
plugin id14375
published2004-08-26
reporterThis script is Copyright (C) 2004-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/14375
titleEasy File Sharing Web Server disk_c Virtual Folder Request Arbitrary File Access