Directory traversal vulnerability in the Persits.XUpload.2 ActiveX control (XUpload.ocx) in HP LoadRunner 9.5 allows remote attackers to create arbitrary files via \.. (backwards slash dot dot) sequences in the third argument to the MakeHttpRequest method.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-10-03T16:23:57

Updated: 2022-10-03T16:23:57

Reserved: 2022-10-03T00:00:00


Link: CVE-2009-3693

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2009-10-13T10:30:00.717

Modified: 2009-10-13T10:30:00.717


Link: CVE-2009-3693

JSON object: View

cve-icon Redhat Information

No data.

CWE