CVE Database
/

CVE-2010-1589

Back to search

CVE-2010-1589

Published: Apr 28, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Directory traversal vulnerability in shopsessionsubs.asp in Rocksalt International VP-ASP Shopping Cart 6.50 and earlier might allow remote attackers to determine the existence of arbitrary files via directory traversal sequences in the client's DNS hostname (aka the REMOTE_HOST variable), related to the CookielessGenerateFilename and CookielessReadFile functions.

VendorProductVersions

n/a

n/a

affected
n/a

References

61891
vdb-entry
x_refsource_OSVDB
38283
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now