Directory traversal vulnerability in getfile.asp in Ultimate HelpDesk allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Ultimate_helpdesk |
Ultimate_helpdesk |
* |
* |
References