Secunia Logo
 
CVE Reference: CVE-2006-0223
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-0223

Description:
Directory traversal vulnerability in Shanghai TopCMM 123 Flash Chat Server Software 5.1 allows attackers to create or overwrite arbitrary files on the server via ".." (dot dot) sequences in the username field.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/24137

SAID
  Secunia Advisory: SA18455

OSVDB
  22440

MISC
  http://www.123flashchat.com/flash-chat-server-v512.html

BUGTRAQ

BID
  16235


Return to the previous page.