HTTP_KEBI_ACADEMY_TRAVERSAL_EXPLOIT
Publish date: 04 de febrero de 2011
Gravedad: Bajo
Fecha recomendada: 04 de febrero de 2011
Descripción
Kebi Academy 2001 has a vulnerability wherein URI parameter input is not properly validated. The vulnerability can cause malicious user to retrieve and upload random files which are readable to the Web server. This can result to compromise of sensitive information or even execution of commands in context of the Web server.
Revelación de la información
Users of Trend Micro PC-cillin Internet Security and Network VirusWall can detect this exploit at the network layer with Network Virus Pattern (NVP) 10195 or later.
Download the latest NVW pattern file from the following site:
http://www.trendmicro.com/download/product.asp?productid=45
Software y versión afectados
- Nara Vision Kebi Academy 2001