Directory Traversal Vulnerabilities in Alt-N WebAdmin by Alt-N Technologies
CVE-2006-4371

Currently unrated

Key Information:

Vendor

Alt-n

Status
Vendor
CVE Published:
26 August 2006

What is CVE-2006-4371?

Multiple directory traversal vulnerabilities exist in Alt-N WebAdmin versions 3.2.3 and 3.2.4, specifically when used with MDaemon versions 9.0.5 and earlier. These vulnerabilities allow remote authenticated global administrators to exploit the file parameter in 'logfile_view.wdm' and 'configfile_view.wdm' to read arbitrary files on the server by utilizing a '..' (dot dot) sequence. This can lead to unauthorized access to sensitive information and compromise the integrity of the system.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.