Moderately critical

SAP Internet Graphics Service Two Vulnerabilities

-

Release Date:  2006-12-06    Last Update:  2006-12-08    Views:  10,011

Secunia Advisory SA23262

Where:

Log in with your Secunia community profile. If you are an IT security professional, request a trial of the Secunia VIM.

Impact:

Log in with your Secunia community profile. If you are an IT security professional, request a trial of the Secunia VIM.

Solution Status:

Log in with your Secunia community profile. If you are an IT security professional, request a trial of the Secunia VIM.

Software:

Log in with your Secunia community profile. If you are an IT security professional, request a trial of the Secunia VIM.

CVE Reference(s):

Log in with your Secunia community profile. If you are an IT security professional, request a trial of the Secunia VIM.

Description


Mariano Nuñez Di Croce has reported two vulnerabilities in SAP Internet Graphics Service (IGS), which can be exploited by malicious people to gain knowledge of various information, bypass certain security restrictions, manipulate data, or cause a DoS (Denial of Service),

1) An input validation error can be exploited to delete any file on the system via a specially crafted HTTP request


Log in with your Secunia community profile to view the full description of this Advisory. If you are an IT security professional, request a trial of the Secunia VIM.

If you are not a member of the Secunia community, you can sign up here for free.

Do you have additional information related to this advisory?

Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com

Subject: SAP Internet Graphics Service Two Vulnerabilities

No posts yet

-

You must be logged in to post a comment.