ImgSvr 0.6.21 - Error Message Remote Script Execution

EDB-ID:

30939

CVE:

N/A


Author:

anonymous

Type:

remote


Platform:

Windows

Date:

2007-12-26


source: https://www.securityfocus.com/bid/27033/info

ImgSvr is prone to a remote script-execution vulnerability because it fails to adequately sanitize user-supplied input.

Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.

This issue affects ImgSvr 0.6.21; other versions may also be vulnerable. 

http://www.example.com/../[code]