Arbitrary File Upload Vulnerability in RealOne Player

Arbitrary File Upload Vulnerability in RealOne Player

CVE-2004-0273 · HIGH Severity

AV:N/AC:M/AU:N/C:C/I:C/A:C

Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote attackers to upload arbitrary files via an RMP file that contains .. (dot dot) sequences in a .rjs skin file.

Learn more about our Cis Benchmark Audit For Desktop Software.