Ultraboard不正确目录许可漏洞

漏洞信息详情

Ultraboard不正确目录许可漏洞

漏洞简介

Ultraboard 2000 2.11版本的默认安装创建带全域可写许可的皮肤,数据库,和备份目录。本地用户修改敏感信息或者可能插入和执行CGI程序。

漏洞公告

Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com.

参考网址

来源: BID
名称: 2197
链接:http://www.securityfocus.com/bid/2197

来源: BUGTRAQ
名称: 20010112 UltraBoard cgi directory permission problem
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=97933458505857&w=2

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享