CVE Vulnerabilities

CVE-2004-2616

Published: Dec 31, 2004 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information by uploading a file, which reveals the path in a success message.

Affected Software

Name Vendor Start Version End Version
Activepost_standard Onnuri_infotek * 3.1 (including)
Activepost_standard Onnuri_infotek 2.5 (including) 2.5 (including)
Activepost_standard Onnuri_infotek 3.0 (including) 3.0 (including)

References