Multiple Information Leakage vulnerabilities in Flussonic Media Server
Multiple Information Leakage vulnerabilities in Flussonic Media Server
Release date:
Updated on: 2014-07-01
Affected Systems:
Flussonic Media Server 4.1.25-4.3.3
Description:
--------------------------------------------------------------------------------
Bugtraq id: 68248
Flussonic Media Server is a scalable Media Server.
The Flussonic Media Server 4.1.25-4.3.3 has multiple information leakage vulnerabilities ('.. /') special request for directory traversal sequence. This vulnerability can be used to retrieve any file in the application context and obtain sensitive information.
<* Source: Bilgi G & #195; & #188; venligi Akademisi
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Flussonic
---------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.flussonic.com/
This article permanently updates the link address: