WWW File Share Pro 2.42 and earlier allows remote attackers to bypass directory access restrictions via (1) a URL with a trailing . (dot), or (2) a URI with a leading slash or backslash character.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=107411794303201&w=2 | mailing list |
http://www.securitytracker.com/id?1008779 | vdb entry |