CVE-2000-1048 Information

Description

Directory traversal vulnerability in the logfile service of Wingate 4.1 Beta A and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack via an HTTP GET request that uses encoded characters in the URL.

Reference

http://archives.neohapsis.com/archives/bugtraq/2000-10/0245.html https://exchange.xforce.ibmcloud.com/vulnerabilities/5373

Share on: