5
CVSSv2

CVE-2005-1939

Published: 31/12/2005 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in Ipswitch WhatsUp Small Business 2004 allows remote malicious users to read arbitrary files via ".." (dot dot) sequences in a request to the Report service (TCP 8022).

Vulnerable Product Search on Vulmon Subscribe to Product

ipswitch whatsup small business 2004

Exploits

source: wwwsecurityfocuscom/bid/15291/info IPSwitch WhatsUp Small Business 2004 is prone to a directory traversal vulnerability Successful exploitation could allow a remote attacker to gain access to files outside the Web root Sensitive information may be obtained in this manner [address of server]:8022//////// ...