HTTP Commander Directory Traversal Vulnerability
BID:8948
Info
HTTP Commander Directory Traversal Vulnerability
| Bugtraq ID: | 8948 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 01 2003 12:00AM |
| Updated: | Nov 01 2003 12:00AM |
| Credit: | The disclosure of this issue has been credited to Zero_X <[email protected]>. |
| Vulnerable: |
HTTP Commander HTTP Commander 4.0 |
| Not Vulnerable: |
HTTP Commander HTTP Commander 4.2 |
Discussion
HTTP Commander Directory Traversal Vulnerability
It has been reported that HTTP Commander is prone a directory traversal issue allowing a remote attacker to traverse outside the server root directory by using '../' character sequences.
Successful exploitation of this vulnerability may allow a remote attacker to gain access to sensitive information, which may be used to mount further attacks against a vulnerable system.
HTTP Commander version 4.0 is reported to be prone to this issue, however other versions may be affected as well.
It has been reported that HTTP Commander is prone a directory traversal issue allowing a remote attacker to traverse outside the server root directory by using '../' character sequences.
Successful exploitation of this vulnerability may allow a remote attacker to gain access to sensitive information, which may be used to mount further attacks against a vulnerable system.
HTTP Commander version 4.0 is reported to be prone to this issue, however other versions may be affected as well.
Exploit / POC
HTTP Commander Directory Traversal Vulnerability
The following proof of concept has been provided:
http://www.example.com/NetDemo2/OpenFile.aspx?file=../../../../../../../../boot.ini
http://www.example.com/NetDemo2/html.aspx?file=../../../../../../../../../boot.ini
The following proof of concept has been provided:
http://www.example.com/NetDemo2/OpenFile.aspx?file=../../../../../../../../boot.ini
http://www.example.com/NetDemo2/html.aspx?file=../../../../../../../../../boot.ini
Solution / Fix
HTTP Commander Directory Traversal Vulnerability
Solution:
The vendor has released an updated version (HTTP Commander 4.2) that addresses this issue. Customers are advised to contact the vendor for details regarding obtaining an appropriate upgrade.
Solution:
The vendor has released an updated version (HTTP Commander 4.2) that addresses this issue. Customers are advised to contact the vendor for details regarding obtaining an appropriate upgrade.
References
HTTP Commander Directory Traversal Vulnerability
References:
References:
- Product Homepage (HTTP Commander)
- Web file manager HTTP Commander 4.2 (HTTP Commander )