about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Fastream NetFile FTP/Web Server Directory Traversal Vulnerability


Title Fastream NetFile FTP/Web Server Directory Traversal Vulnerability
Published 2004-07-05-12:00AM
Updated 2004-07-05-04:11PM
Class Input Validation Error
CVE   CAN-2004-0676
Remote  Yes
Local  No
Credit  Discovery is credited to Andres Tarasco Acuna <at4r@haxorcitos.com>.
Vulnerable  Fastream NetFILE FTP/Web Server 6.7.2 .1085
Fastream NetFILE FTP/Web Server 6.5.1 .981
Fastream NetFILE FTP/Web Server 6.5.1 .980
Not Vulnerable  Fastream NetFILE FTP/Web Server 6.7.5
Fastream NetFILE FTP/Web Server 6.7.3
Code   No exploit is required.

The following proof of concept is available:
http://www.example.com?command=mkdir&filename=..//FOLDER_IS_OUTSIDE_THE_ROOT_DIRECTORY
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 02:27:11 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
xassnt.cn MAX_UNAUTH www.film a www.hqian. foto sex k www.5ok.cc Indian fre www.lyg007 news for c Pics of ka porn,pros, local over www.zixunz Dark Integrated news for c sex fuck iinefanyqo taboo2-the lo659l www.qingse WWW.NAMITH KOS WWW SEXY G blog.cnfol Mp3 englis p...groups how to cre honor clan rpc nfs www.89.com 200 /compo \Z\Z php-nuke 2 https://ww shreya sex sex girl i Sex wall http:www.6 Sexy free search/exp kareena ka http:/wy88 www. . PostNUke /com_rsgal Exploit xo extraction Www.downlo http:/www2