header-logo
Suggest Exploit
vendor:
ImgSvr
by:
Unknown
7.5
CVSS
HIGH
Remote script-execution
Unknown
CWE
Product Name: ImgSvr
Affected Version From: 2000.6.21
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Metasploit:
Other Scripts:
Platforms Tested: Unknown
Unknown

ImgSvr Remote Script-Execution Vulnerability

ImgSvr is prone to a remote script-execution vulnerability because it fails to adequately sanitize user-supplied input. Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.

Mitigation:

Unknown
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/27033/info

ImgSvr is prone to a remote script-execution vulnerability because it fails to adequately sanitize user-supplied input.

Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.

This issue affects ImgSvr 0.6.21; other versions may also be vulnerable. 

http://www.example.com/../[code]