Description
The Upload method in the RealPage Module Upload ActiveX control in Realpage.dll 1.0.0.9 in RealPage Module ActiveX Controls does not properly restrict certain property values, which allows remote attackers to read arbitrary files via a filename in the SourceFile property in conjunction with an http URL in the DestURL property.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2010-2588 | The Upload method in the RealPage Module Upload ActiveX control in Realpage.dll 1.0.0.9 in RealPage Module ActiveX Controls does not properly restrict certain property values, which allows remote attackers to read arbitrary files via a filename in the SourceFile property in conjunction with an http URL in the DestURL property. |
References
History
No history.
Status: PUBLISHED
Assigner: flexera
Published:
Updated: 2024-09-16T20:37:02.746Z
Reserved: 2010-07-01T00:00:00.000Z
Link: CVE-2010-2584
No data.
Status : Modified
Published: 2010-10-26T19:00:02.627
Modified: 2026-04-29T01:13:23.040
Link: CVE-2010-2584
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD