Vulnerabilities > CVE-2006-2899 - Unspecified vulnerability in Estsoft Internetdisk
Attack vector
NETWORK Attack complexity
LOW Privileges required
SINGLE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Unspecified vulnerability in ESTsoft InternetDISK versions before 2006/04/20 allows remote authenticated users to execute arbitrary code, possibly by uploading a file with multiple extensions into the WebLink directory. This vulnerability is addressed in the following product release: ESTsoft, InternetDISK, (version released 2006.04.20)
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | ESTsoft InternetDisk Arbitrary File Upload and Script Execution Vulnerability. CVE-2006-2899. Webapps exploit for php platform |
id | EDB-ID:27972 |
last seen | 2016-02-03 |
modified | 2006-06-05 |
published | 2006-06-05 |
reporter | Kil13r |
source | https://www.exploit-db.com/download/27972/ |
title | ESTsoft InternetDisk Arbitrary File Upload and Script Execution Vulnerability |