Exploit Interactive story 1.3 - Directory Traversal

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
21008
Проверка EDB
  1. Пройдено
Автор
QDEFENSE
Тип уязвимости
REMOTE
Платформа
CGI
CVE
cve-2001-0804
Дата публикации
2001-07-15
Код:
source: https://www.securityfocus.com/bid/3028/info

Interactive Story is a web-based application written in Perl and is distributed as freeware.

Interactive Story does not filter '../' sequences from user input submitted to a hidden file called 'next'. Remote attackers may take advantage of this by crafting URLs that allow them to break out of webroot and view arbitrary web-readable files.

The disclosed information may be used in further attacks on the host. 

If an attacker sets the "next" field to something like
../../../../../../../../../../etc/passwd%00, Interactive Story will open and display the password file.
 
Источник
www.exploit-db.com

Похожие темы