We have published a new version of IPCheck Server Monitor that fixes a security issue in the webserver: By Using URLs with special characters a so-called "directory traversal" was possible. This fact could be exploited to gain access to files on the disk which IPCheck is installed on.
This vulnerability applies to all V4.x and V5.x versions of IPCheck Server Monitor. This update is especially recommended for users using IPCheck's web interface over WAN connections were hackers might attempt to exploit the vulnerability to gain access to information on their server! We recommend to either update your installation to V5.3.3 as soon as possible, or to disable public access to the web interface of the IPCheck installation. This latest version also contains a number of bugfixes, please see the Release Notes for details. Go to the IPCheck Server Monitor Download Page.


Copyright © 1998 - 2011 Paessler AG