Vulnerabilities > CVE-2004-2121 - Unspecified vulnerability in Borland Software web Server for Corel Paradox
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN borland-software
exploit available
Summary
Multiple directory traversal vulnerabilities in Borland Web Server (BWS) 1.0b3 and earlier allow remote attackers to read and download arbitrary files via (1) multi-dot "......" sequences, or (2) "%5c%2e%2e" (encoded "\..") sequences, in the URL.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Borland Web Server for Corel Paradox 1.0 b3 Directory Traversal Vulnerability. CVE-2004-2121. Remote exploit for windows platform |
id | EDB-ID:23597 |
last seen | 2016-02-02 |
modified | 2004-01-24 |
published | 2004-01-24 |
reporter | Rafel Ivgi The-Insider |
source | https://www.exploit-db.com/download/23597/ |
title | borland Web server for corel paradox 1.0 b3 - Directory Traversal Vulnerability |
References
- http://marc.info/?l=bugtraq&m=107497413413907&w=2
- http://marc.info/?l=bugtraq&m=107497413413907&w=2
- http://securitytracker.com/id?1008840
- http://securitytracker.com/id?1008840
- http://www.securityfocus.com/bid/9486
- http://www.securityfocus.com/bid/9486
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14948
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14948