Vulnerabilities > CVE-2006-5028 - Directory Traversal vulnerability in Swsoft Plesk and Plesk Reload
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
Directory traversal vulnerability in filemanager/filemanager.php in SWsoft Plesk 7.5 Reload and Plesk 7.6 for Microsoft Windows allows remote attackers to list arbitrary directories via a ../ (dot dot slash) in the file parameter in a chdir action.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | PLESK 7.5/7.6 Filemanager.PHP Directory Traversal Vulnerability. CVE-2006-5028. Webapps exploit for php platform |
id | EDB-ID:28647 |
last seen | 2016-02-03 |
modified | 2006-09-22 |
published | 2006-09-22 |
reporter | GuanYu |
source | https://www.exploit-db.com/download/28647/ |
title | PLESK 7.5/7.6 - Filemanager.PHP Directory Traversal Vulnerability |
References
- http://secunia.com/advisories/22058
- http://securityreason.com/securityalert/1643
- http://www.securityfocus.com/archive/1/446730/100/0/threaded
- http://www.securityfocus.com/archive/1/470509/100/0/threaded
- http://www.securityfocus.com/bid/20155
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29134