Megacomputing Personal-WebServer Professional Remote Directory Traversal Vulnerability
BID:8721
Info
Megacomputing Personal-WebServer Professional Remote Directory Traversal Vulnerability
| Bugtraq ID: | 8721 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 29 2003 12:00AM |
| Updated: | Sep 29 2003 12:00AM |
| Credit: | Discovery credited to Oliver Karow. |
| Vulnerable: |
Megacomputing Personal-WebServer Professional 5.3.42 |
| Not Vulnerable: | |
Discussion
Megacomputing Personal-WebServer Professional Remote Directory Traversal Vulnerability
A problem has been identified in the handling of requests for files outside of the web server root. Because of this, an attacker may be able to gain unauthorized access to sensitive information.
A problem has been identified in the handling of requests for files outside of the web server root. Because of this, an attacker may be able to gain unauthorized access to sensitive information.
Exploit / POC
Megacomputing Personal-WebServer Professional Remote Directory Traversal Vulnerability
This vulnerability may be exploited with a web browser.
This vulnerability may be exploited with a web browser.
Solution / Fix
Megacomputing Personal-WebServer Professional Remote Directory Traversal Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Megacomputing Personal-WebServer Professional Remote Directory Traversal Vulnerability
References:
References:
- Personal-WebServer Homepage (Megacomputing)