exploit-db-mirror/exploits/multiple/remote/19828.txt
Offensive Security b4c96a5864 DB: 2021-09-03
28807 changes to exploits/shellcodes
2021-09-03 20:19:21 +00:00

6 lines
No EOL
381 B
Text

source: https://www.securityfocus.com/bid/1083/info
The default configuration of Cobalt Raq2 and Raq3 servers allows remote access to .htaccess files. This could lead to unauthorized retrieval of username and password information for restricted portions of a website hosted on the server.
Make a regular GET request, specifying an .htaccess file ie:
http ://target/path/.htaccess