Exploit Simple Web Server 0.5.1 - File Disclosure

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
22001
Проверка EDB
  1. Пройдено
Автор
TAMER SAHIN
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
cve-2002-1238
Дата публикации
2002-11-08
Код:
source: https://www.securityfocus.com/bid/6145/info

Simple Web Server does not properly sanitize web requests. By adding a slash-slash sequence ('//') to a URI, it is possible for an attacker to disclose files on the vulnerable web server, effectively bypassing any access controls. 

http://server.com///secret/file
 
Источник
www.exploit-db.com

Похожие темы