Get a Pentest and security assessment of your IT network.

News

CVE-2004-1496 – Directory traversal vulnerability in Web Forums Server 1.6 and 2.0 Power

Directory traversal vulnerability in Web Forums Server 1.6 and 2.0 Power Pack allows remote attackers to read arbitrary files via a URL containing (1) “..” (dot dot backslash)

 

Source: (2) “”../”” (dot dot slash)

Reference (s):

  • (3) “”/%2E%2E%5C”” (encoded dot dot backslash)
  • or (4) “”%2E%2E%2F”” (encoded dot dot slash).”
  • https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1496
  • BUGTRAQ:20041102 Multiple Vulnerabilities in Web Forums Server
  • URL: http://marc.info/?l=bugtraq&m=109943267328552&w=2
Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

1 day attack with DDoS booter costs $60 causing $720k in damageSecurity Affairs

News

NSA-linked Cisco exploit poses bigger threat than previously thought