Exploit MetaProducts Offline Explorer 1.0 x/1.1 x/1.2 x - Directory Traversal

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
19945
Проверка EDB
  1. Пройдено
Автор
WYZEWUN
Тип уязвимости
REMOTE
Платформа
MULTIPLE
CVE
cve-2000-0436
Дата публикации
2000-05-19
MetaProducts Offline Explorer 1.0 x/1.1 x/1.2 x - Directory Traversal
Код:
source: https://www.securityfocus.com/bid/1231/info

MetaProducts Offline Explorer is an application that allows a user to download the contents of a website or FTP site for offline browsing at a later time.

It is possible to view known files on a system Offline Explorer resides on. By default, Offline Explorer listens on port 800. A remote user may retrieve the contents of known files without any authorization whatsoever by performing a GET request and implementing the double dot "../..\" directory traversal technique.

Eg.

http://target:800/../..\
 
Источник
www.exploit-db.com

Похожие темы