Vulnerabilities > CVE-2005-2020 - Unspecified vulnerability in 3Com 3C15100D 5.0.2
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN 3com
nessus
Summary
Directory traversal vulnerability in the web server for 3Com Network Supervisor 5.0.2 allows remote attackers to read arbitrary files via ".." sequences in the URL to TCP port 21700.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | CGI abuses |
NASL id | 3COM_NETWORK_SUPERVISOR_DIR_TRAVERSAL.NASL |
description | The remote host is running 3Com Network Supervisor, a network monitoring application. The version of 3Com Network Supervisor installed on the remote host is prone to a directory traversal attack and, as such, allows an unauthenticated attacker to read arbitrary files on the same filesystem as the application. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 19939 |
published | 2005-10-06 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/19939 |
title | 3Com Network Supervisor Traversal Arbitrary File Access |
code |
|
References
- http://secunia.com/advisories/16639
- http://secunia.com/advisories/16639
- http://securitytracker.com/id?1014836
- http://securitytracker.com/id?1014836
- http://www.idefense.com/application/poi/display?id=300&type=vulnerabilities&flashstatus=true
- http://www.idefense.com/application/poi/display?id=300&type=vulnerabilities&flashstatus=true
- http://www.vupen.com/english/advisories/2005/1611
- http://www.vupen.com/english/advisories/2005/1611