Cobalt RAQ 4 にはディレクトリトラバーサルの脆弱性があり、リモートの攻撃者が HTTP リクエスト内の ..(ドットドット)を使用して、パスワードで保護されたファイルや、Web ルート外のファイルを読み取ることが可能です。
Packetstorm 公開記事: https://packetstormsecurity.com/files/25837/Colbalt-RAQ-v4.txt.html
SecurityFocus 公開記事: https://www.securityfocus.com/bid/4208
Alex Hernandez 別名 (@_alt3kx_)
ベンダーに通知済みです。
投稿先リスト(Security cobalt):
[email protected] &
[email protected]
http://www.cobalt.com