This application requires Javascript for optimal performance.

MS.IE.FTP.Client.Folder.Traversal

Release Date

Jan 05, 2012

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems

Description

This indicates an attack attempt against a Directory Traversal vulnerability in Microsoft Internet Explorer.

The vulnerability is in the way that the application handles FTP transfers. A remote attacker may exploit this to create files in arbitrary locations on an affected computer.

Affected Products

Microsoft Internet Explorer 5.01, 5.5, and 6.0

Recommended Actions

Microsoft has released updates to address this vulnerability.
Please refer to
http://www.microsoft.com/downloads/details.aspx?familyid=4940CF64-E1FD -4E88-8980-3106BE03BF12&displaylang=en

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2004-1376

Reference/s

http://www.securityfocus.com/bid/12160 (BugTraq)

Reference: VID-30570