Directory traversal vulnerability in WorldClient.cgi in WorldClient for Alt-N Technologies MDaemon 5.0.5.0 and previous versions allows local users to delete arbitrary files via a ".." (dot dot) in the Attachments parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
alt-n worldclient 5.0.1 |
||
alt-n worldclient 5.0.2 |
||
alt-n worldclient 5.0.5 |
||
alt-n worldclient 5.0 |
||
alt-n worldclient 5.0.3 |
||
alt-n worldclient 5.0.4 |