Security Advisory

CVE-2004-2253

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-07-17 04:00:00
Last updated 2024-08-08 01:22:13
Assigner mitre
State PUBLISHED

Description

Directory traversal vulnerability in user.cgi in SurgeLDAP 1.0g and earlier allows remote attackers to read arbitrary files via a .. in the page parameter of the show command.