Vulnerabilities > CVE-2004-2616 - Unspecified vulnerability in Onnuri Infotek Activepost Standard 2.5/3.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information by uploading a file, which reveals the path in a success message.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
References
- http://aluigi.altervista.org/adv/actp-adv.txt
- http://aluigi.altervista.org/adv/actp-adv.txt
- http://archives.neohapsis.com/archives/fulldisclosure/2004-09/0852.html
- http://archives.neohapsis.com/archives/fulldisclosure/2004-09/0852.html
- http://marc.info/?l=bugtraq&%3Bm=109597139011373&%3Bw=2
- http://marc.info/?l=bugtraq&%3Bm=109597139011373&%3Bw=2
- http://securitytracker.com/id?1011406
- http://securitytracker.com/id?1011406
- http://www.osvdb.org/10235
- http://www.osvdb.org/10235