Way-Board File Disclosure Vulnerability
BID:2370
Info
Way-Board File Disclosure Vulnerability
| Bugtraq ID: | 2370 |
| Class: | Input Validation Error |
| CVE: |
CVE-2001-0214 |
| Remote: | Yes |
| Local: | Yes |
| Published: | Feb 12 2001 12:00AM |
| Updated: | Jul 11 2009 04:46AM |
| Credit: | Discovered and posted to Bugtraq by <[email protected]> on Feb 12, 2001. |
| Vulnerable: |
Way Way-Board 2.0 |
| Not Vulnerable: | |
Discussion
Way-Board File Disclosure Vulnerability
A remote user could gain read access to known files outside of the root directory where Way-Board resides. Requesting a specially crafted URL composed of '%00' sequences along with the known filename will disclose the requested file.
A remote user could gain read access to known files outside of the root directory where Way-Board resides. Requesting a specially crafted URL composed of '%00' sequences along with the known filename will disclose the requested file.
Exploit / POC
Way-Board File Disclosure Vulnerability
The following example has been provided by <[email protected]>:
http://target/way-board/way-board.cgi?db=url_to_any_file%00
The following example has been provided by <[email protected]>:
http://target/way-board/way-board.cgi?db=url_to_any_file%00