Pacific Software URL Live! 1.0 - Directory Traversal



EKU-ID: 25164 CVE: CVE-1999-0915;OSVDB-1129 OSVDB-ID:
Author: UNYUN Published: 1999-10-28 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/746/info

The URL Live! free webserver from Pacific software is susceptible to the "../" directory traversal vulnerability. By using the '../' string in a URL, an attacker can gain read access to files outside the intended web file structure.

Example:
http ://xyz.com/../../../config.sys