Vulnerabilities > CVE-2006-5034 - Directory Traversal vulnerability in Paul Smith Computer Services Vcap 1.9.0Beta

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
paul-smith-computer-services
exploit available

Summary

Directory traversal vulnerability in Paul Smith Computer Services vCAP 1.9.0 Beta and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the URI.

Vulnerable Configurations

Part Description Count
Application
Paul_Smith_Computer_Services
1

Exploit-Db

descriptionPaul Smith Computer Services VCAP Calendar Server 1.9 Directory Traversal Vulnerability. CVE-2006-5034. Remote exploit for windows platform
idEDB-ID:28512
last seen2016-02-03
modified2009-09-12
published2009-09-12
reportersecurma massine
sourcehttps://www.exploit-db.com/download/28512/
titlepaul smith computer services vcap calendar server 1.9 - Directory Traversal Vulnerability