reget deluxe 3.0 build 121 – Directory Traversal

reget deluxe 3.0 build 121 – Directory Traversal

漏洞ID 1054416 漏洞类型
发布时间 2004-03-22 更新时间 2004-03-22
图片[1]-reget deluxe 3.0 build 121 – Directory Traversal-安全小百科CVE编号 N/A
图片[2]-reget deluxe 3.0 build 121 – Directory Traversal-安全小百科CNNVD-ID N/A
漏洞平台 JSP CVSS评分 N/A
|漏洞来源
https://www.exploit-db.com/exploits/23872
|漏洞详情
漏洞细节尚未披露
|漏洞EXP
source: http://www.securityfocus.com/bid/9951/info

It has been reported that ReGet may be prone to a directory traversal vulnerability that may allow remote attackers to upload files to arbitrary locations on a target system. The attacker may supply encoded directory traversal sequences in the URI parameter so that the requested file is saved outside of the default download directory specified by the user.

ReGet Deluxe 3.0 build 121 has been reported to be prone to this issue, however, other versions could be affected as well.

/support/download.jsp?filename=..%2F ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fshadow

相关推荐: PunBB Unauthorized Restricted Forum Access Vulnerability

PunBB Unauthorized Restricted Forum Access Vulnerability 漏洞ID 1101093 漏洞类型 Access Validation Error 发布时间 2002-12-20 更新时间 2002-12-20…

© 版权声明
THE END
喜欢就支持一下吧
点赞0
分享