exploit-db-mirror/exploits/cgi/remote/20068.txt
Offensive Security 36c084c351 DB: 2021-09-03
45419 changes to exploits/shellcodes

2 new exploits/shellcodes

Too many to list!
2021-09-03 13:39:06 +00:00

7 lines
No EOL
389 B
Text

source: https://www.securityfocus.com/bid/1455/info
Versions 1.4H and prior of BB4 Big Brother are susceptible to a directory traversal vulnerability which would allow a remote user to view the contents of any directory or file on the system. Executing a GET request for:
http://target/cgi-bin/bb-hostsvc.sh?HOSTSVC=/../../directory
will display the contents of the specified directory.