First published: Tue Oct 13 2009(Updated: )
Directory traversal vulnerability in the Persits.XUpload.2 ActiveX control (XUpload.ocx) in HP LoadRunner 9.5 allows remote attackers to create arbitrary files via \.. (backwards slash dot dot) sequences in the third argument to the MakeHttpRequest method.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Persits XUpload | =2.0 | |
HP LoadRunner | =9.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.