The Boa web server, as used in Samsung ADSL Modem SMDK8947v1.2 and possibly other products, allows remote attackers to read arbitrary files via a full pathname in the HTTP request.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/12864 | vdb entry |
http://exploitlabs.com/files/advisories/EXPL-A-2005-002-samsung-adsl.txt | exploit vendor advisory |
http://zone-h.org/en/advisories/read/id=7339/ | exploit vendor advisory |