file sharing for net 1.5 - Directory Traversal
Author: sickle
type: remote
platform: windows
port:
date_added: 2003-08-30
date_updated: 2012-12-02
verified: 1
codes: OSVDB-2644
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/8513/info
File Sharing for Net is said to be prone to a directory traversal vulnerability, potentially allowing users to disclose the contents of system files. The problem occurs due to the application failing to parse user-supplied input for directory traversal sequences (../), thus making it possible to access files outside of the established web root.
http://www.example.org/../../../autoexec.bat