SecurityAlert : 4773 CVE : CVE-2008-5645 CWE : CWE-22 SecurityRisk : High (About) Remote Exploit : Yes Local Exploit : No Victim interaction required : No Exploit Available : No Credit : Steven James and r@b13$ Published : 21.12.2008
Orb Networks' Orb media server is vulnerable to directory traversal
attacks. Users can leverage specially crafted GET requests to read
arbitrary files.
Solution Description
--------------------
Use firewall rules to restrict access to authorized users of the Orb
server.
This issue is fixed in version 2.01.0022 available at
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.