WebTrends Enterprise Reporting Server 3.1 c/3.5 - Source Code Disclosure



EKU-ID: 26427 CVE: CVE-2001-0693;OSVDB-6157 OSVDB-ID:
Author: Auriemma Luigi Published: 2001-06-03 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/2812/info

WebTrends Live is a web-based reporting service which provides interactive tracking of usage statistics and E-commerce revenue.

It is possible to view the source code of arbitrary scripts on the WebTrends Live webserver. This is accomplished by crafting a URL with an encoded space after the filename of the script.

http://host/remote_login.pl%20