Pacific Software URL Live! 1.0 - Directory Traversal
Author: UNYUN
type: remote
platform: windows
port:
date_added: 1999-10-28
date_updated: 2017-10-28
verified: 1
codes: CVE-1999-0915;OSVDB-1129
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/746/info
The URL Live! free webserver from Pacific software is susceptible to the "../" directory traversal vulnerability. By using the '../' string in a URL, an attacker can gain read access to files outside the intended web file structure.
Example:
http ://xyz.com/../../../config.sys