Directory traversal vulnerability in pagecount CGI script in Sambar Server before 5.0 beta 5 allows remote attackers to overwrite arbitrary files via a .. (dot dot) attack on the page parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sambar_server | Sambar | 4.4 (including) | 4.4 (including) |
Sambar_server | Sambar | 5.0-beta1 (including) | 5.0-beta1 (including) |
Sambar_server | Sambar | 5.0-beta2 (including) | 5.0-beta2 (including) |
Sambar_server | Sambar | 5.0-beta3 (including) | 5.0-beta3 (including) |
Sambar_server | Sambar | 5.0-beta4 (including) | 5.0-beta4 (including) |