CVE-2010-3306 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in the modURL function in instance.c in Weborf before 0.12.3 allows remote attackers to read arbitrary files via ..2f sequences in a URI.
Reference
http://code.google.com/p/weborf/source/detail?r=464 http://galileo.dmi.unict.it/wiki/weborf/doku.php?id=news:released_0.12.3 http://secunia.com/advisories/41286 http://www.exploit-db.com/exploits/14925/ http://www.openwall.com/lists/oss-security/2010/09/17/3 http://www.openwall.com/lists/oss-security/2010/09/17/8 http://www.osvdb.org/67840
Share on: