Phase:Directory traversal vulnerability in SalesLogix 6.1 allows remote attackers to upload arbitrary files via a .. (dot dot) in a ProcessQueueFile request.
ReferencesBUGTRAQ:Monday, October 18, 2004 Multiple vulnerabilities in Sage Saleslogix | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=109811852218478&w=2 | FULLDISC:Monday, October 18, 2004 Multiple vulnerabilities in Sage Saleslogix | URL:http://archives.neohapsis.com/archives/fulld
Votes:Assigned (Sunday, February 20, 2005)
Comments:None (candidate not yet proposed)
F7: