Directory Traversal and Data Disclosure in RCBlog

Summary for Directory Traversal and Data Disclosure in RCBlog

Vulnerability
Directory Traversal and Data Disclosure in RCBlog
Discovered
2006.01.19
Last Update
0 n/a
ID
EV0042
CVE
CVE-2006-0370 CVE-2006-0371
Risk Level
high
Type
Sensitive Information Disclosure
Status
Unpatched
Vendor
n/a
Vulnerable Software
RCBlog
Version
1.0.3 1.0.2 (1.0.2 - checked by Nicolas Cenciarini, nicolas@criston.com)
PoC/Exploit
Available
Solution
Not available
Discovered by
Aliaksandr Hartsuyeu (eVuln.com)

Order Source Code Analysis made by eVuln team

Defend against attacks by source code audit of a website or web application made by eVuln team.The order will be done by specialists in website security.