Accipiter DirectServer Remote File Disclosure Vulnerability
BID:9389
Info
Accipiter DirectServer Remote File Disclosure Vulnerability
| Bugtraq ID: | 9389 |
| Class: | Input Validation Error |
| CVE: |
CVE-2004-0072 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 09 2004 12:00AM |
| Updated: | Jul 12 2009 12:56AM |
| Credit: | Disclosure of this issue has been credited to Mark Bassett <[email protected]> |
| Vulnerable: |
Accipiter DirectServer 6.0 |
| Not Vulnerable: | |
Discussion
Accipiter DirectServer Remote File Disclosure Vulnerability
This vulnerability may allow and attacker to gain access to files that reside outside of the web root directory using a specially crafted URI that contains URL-encoded variations of directory traversal sequences.
This issue has been reported to affect Windows variants of the software. It is not known if other versions are also affected.
This vulnerability may allow and attacker to gain access to files that reside outside of the web root directory using a specially crafted URI that contains URL-encoded variations of directory traversal sequences.
This issue has been reported to affect Windows variants of the software. It is not known if other versions are also affected.
Exploit / POC
Accipiter DirectServer Remote File Disclosure Vulnerability
This issue may be exploited with a web browser. The following example was provided:
http://www.example.com/%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cboot.ini
This issue may be exploited with a web browser. The following example was provided:
http://www.example.com/%5c%2e%2e%5c%2e%2e%5c%2e%2e%5c%2e%2e%5cboot.ini
Solution / Fix
Accipiter DirectServer Remote File Disclosure Vulnerability
Solution:
It has been reported that the vendor will be providing a patch with the next major release.
Solution:
It has been reported that the vendor will be providing a patch with the next major release.