Directory traversal vulnerability in myServer 0.7 allows remote attackers to list arbitrary directories via an HTTP GET command with a large number of "./" sequences followed by "../" sequences.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/vulnwatch/2004-q3/0052.html | mailing list patch |
http://sourceforge.net/project/shownotes.php?release_id=267444 | patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/17390 | vdb entry |
http://secunia.com/advisories/12561 | third party advisory vendor advisory |
http://www.osvdb.org/10001 | vdb entry exploit |
http://securitytracker.com/id?1011278 | vdb entry exploit |
http://www.securityfocus.com/bid/11189 | exploit vdb entry patch |