[] NeoSense

file sharing for net 1.5 - Directory Traversal

Author: sickle
type: remote
platform: windows
port: 
date_added: 2003-08-30 
date_updated: 2012-12-02 
verified: 1 
codes: OSVDB-2644 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/8513/info

File Sharing for Net is said to be prone to a directory traversal vulnerability, potentially allowing users to disclose the contents of system files. The problem occurs due to the application failing to parse user-supplied input for directory traversal sequences (../), thus making it possible to access files outside of the established web root.

http://www.example.org/../../../autoexec.bat