Vulnerabilities > CVE-2007-3714 - Local File Include vulnerability in ADA Imgsvr 0.6.5
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
Directory traversal vulnerability in Ada Image Server (ImgSvr) 0.6.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter to the default URI. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this is probably a different issue than CVE-2004-2464. NOTE: it was later reported that 0.6.21 and earlier is also affected.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | ImgSvr 0.6 Template Parameter Local File Include Vulnerability. CVE-2007-3714. Remote exploit for linux platform |
id | EDB-ID:30286 |
last seen | 2016-02-03 |
modified | 2007-07-10 |
published | 2007-07-10 |
reporter | Tim Brown |
source | https://www.exploit-db.com/download/30286/ |
title | ImgSvr 0.6 Template Parameter Local File Include Vulnerability |