Exploit caucho Technology resin 1.2 - Directory Traversal

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
20635
Проверка EDB
  1. Пройдено
Автор
JOETESTA
Тип уязвимости
REMOTE
Платформа
MULTIPLE
CVE
cve-2001-0304
Дата публикации
2001-02-16
Код:
source: https://www.securityfocus.com/bid/2384/info

It is possible for a remote user to gain read access to directories and files outside the root directory of a machine running Resin. Requesting a specially crafted URL composed of '/..' or '/...' sequences will disclose an arbitrary directory.

http://target/\../readme.txt
 
Источник
www.exploit-db.com

Похожие темы