Enceladus Server Suite traversal directory vulnerability Dec 08 2002 07:15PM
luca.ercoli (at) inwind (dot) it [email concealed] (luca ercoli inwind it)
Summary: Enceladus Server Suite is an internet/intranet lightweight web

and ftp server for windows.

Details: The web server has been found to contain a security flaw that

allows attackers to travers up the root directory and view/download

files on the system.

Vulnerable System: Enceladus Server Suite version 2.6.1

Example: http://host/../

From Luca Ercoli luca.ercoli (at) inwind (dot) it [email concealed]

[ reply ]


