functional security
Showing 1 - 1 of 1 RSS Feed

Files

Cisco Security Advisory 20100721-spcdn
Posted Jul 22, 2010
Authored by Cisco Systems | Site cisco.com

Cisco Security Advisory - The Cisco Internet Streamer application, part of the Cisco Content Delivery System, contains a directory traversal vulnerability on its web server component that allows for arbitrary file access. By exploiting this vulnerability, an attacker may be able to read arbitrary files on the device, outside of the web server document directory, by using a specially crafted URL. An unauthenticated attacker may be able to exploit this issue to access sensitive information, including the password files and system logs, which could be leveraged to launch subsequent attacks. Cisco has released free software updates that address this vulnerability.

tags | advisory, web, arbitrary
systems | cisco
advisories | CVE-2010-1577
MD5 | 2a6cec2e7c8969b69256572f86e1b516
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close