Full Disclosure mailing list archives
Advisory 2006-03-11 Directory Transversal in Microsoft Windows 2000
From: Robert Perriero <ssgsa () mail montclair edu>
Date: Sat, 11 Mar 2006 23:00:25 -0800
Advisory 2006-03-11 Directory Transversal in Microsoft Windows 2000 I. BACKGROUND Advisory marked for immediate release. II. DESCRIPTION Remote exploitation of a directory traversal vulnerability in Microsoft Windows 2000 could allow attackers to overwrite or view arbitrary files with user-supplied contents. III. HISTORY This advisory has no history. IV. WORKAROUND There are no known workarounds. V. VENDOR RESPONSE Microsoft Windows 2000 has not commented on this issue. VI. CVE INFORMATION The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2006-310292 to this issue. APPENDIX A. - Vendor Information http://www.microsoft.com APPENDIX B. - References NONE CONTACT: *Robert Perriero bantown () spam la *1-888-LOL-WHAT *CISSP GSAE CCE CEH CSFA GREM SSP-CNSA SSP-MPA GIPS GHTQ GWAS _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- Advisory 2006-03-11 Directory Transversal in Microsoft Windows 2000 Robert Perriero (Mar 11)