Gattaca Server 2003 Multiple Path Disclosure Vulnerabilities

No exploit is required.

An example URI that may return the installation path:
http://www.example.com/%00

An example URI that may return the web document root:
http://www.example.com/web.tmpl?HELPID=8000&TEMPLATE=skins//water&LANGUAGE=[whatever]


 

Privacy Statement
Copyright 2010, SecurityFocus