about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , IBM Lotus Domino HTTP webadmin.nsf Directory Traversal Vulnerability


Title IBM Lotus Domino HTTP webadmin.nsf Directory Traversal Vulnerability
Published 2004-03-17-12:00AM
Updated 2005-11-29-09:40PM
Class Input Validation Error
CVE   CVE-MAP-NOMATCH
Remote  Yes
Local  No
Credit  Discovery is credited to Dr_insane <dr_insane@pathfinder.gr>.
Vulnerable  Lotus Domino 6.5.1
IBM Lotus Domino 7.0
IBM Lotus Domino 6.0.3
Not Vulnerable  
Code   The following proof of concept has been provided:
1)Go to http://www.example.com/webadmin.nsf
2)Go to "Files" tab
3)From the "Tools" menu select to create a "new" folder
4)As the name of the new folder enter "/../../../../../../pr00f"

or

"/../../../../windows/win.ini"
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Wed, 16 Dec 2009 20:25:13 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
a-cart snekasex www.adobe t830t index.php? www.llhzh. 2004 sex girles free downl same tv.djkko.c xexofree t386t www.www.20 o my goody www.riveri Schcoolsex WWW.BOLLYW www.riveri www.emoney www.80845. www.worldb Www.behind 200 /compo PUSSY inject japsnese k www.80845. swa Photo sexy sexwwwcom bluesex 2...us/osi wwsexy.fr juegospara blu filim bluesex news for c www.gamepu irantv.com SNEHASEX.C sex net Bathroom s www.xinzhe Xxxporno Bathroom s iis 5 the grils myanmarsex emule expl