exploit-db-mirror/exploits/windows/remote/22609.txt
Offensive Security d304cc3d3e DB: 2017-11-24
116602 new exploits

Too many to list!
2017-11-24 20:56:23 +00:00

8 lines
No EOL
474 B
Text

source: http://www.securityfocus.com/bid/7618/info
It has been announced that Snowblind Web Server is vulnerable to a condition that may result in the disclosure of potentially sensitive information.
According to the report, Snowblind Web Server does not perform correct access validation on client requested paths which include "../" character sequences.
http://www.example.com/../../windows/system.ini
http://www.example.com/internal.sws?../../windows/system.ini