Vulnerabilities > CVE-2005-2731 - Directory Traversal vulnerability in Astaro Security Linux 6.001

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
local
low complexity
astaro

Summary

Directory traversal vulnerability in Astaro Security Linux 6.0, when using Webmin, allows remote authenticated webmin users to read arbitrary files via a .. (dot dot) in the wfe_download parameter to index.fpl.

Vulnerable Configurations

Part Description Count
OS
Astaro
1