DSM Light Explorer.EXE Directory Traversal Vulnerability
BID:10381
Info
DSM Light Explorer.EXE Directory Traversal Vulnerability
| Bugtraq ID: | 10381 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 18 2004 12:00AM |
| Updated: | May 18 2004 12:00AM |
| Credit: | Disclosure of this issue is credited to Humberto <[email protected]>. |
| Vulnerable: |
DSM Light Web File Browser 2.0 |
| Not Vulnerable: | |
Discussion
DSM Light Explorer.EXE Directory Traversal Vulnerability
DSM Light has been reported to be prone to a directory traversal vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI input.
This issue would allow an attacker to view arbitrary, web-readable files on the affected computer. This may aid an attacker in conducting further attacks against the vulnerable computer.
DSM Light has been reported to be prone to a directory traversal vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI input.
This issue would allow an attacker to view arbitrary, web-readable files on the affected computer. This may aid an attacker in conducting further attacks against the vulnerable computer.
Exploit / POC
DSM Light Explorer.EXE Directory Traversal Vulnerability
No exploit is required to leverage this issue. The following proof of concept has been provided:
http://www.example.com/htmlarea/popups/explorer.php?wdir=/../../../../../../../../../../etc
No exploit is required to leverage this issue. The following proof of concept has been provided:
http://www.example.com/htmlarea/popups/explorer.php?wdir=/../../../../../../../../../../etc
Solution / Fix
DSM Light Explorer.EXE Directory Traversal Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.