|
|
| |
| WebReflex is a web server that is specially designed for use on CDROMs. A vulnerability in the product allows remote attackers to traverse beyond the normally bound HTML root directory provided by the web server. |
| |
Credit:
The information has been provided by Luca Ercoli.
|
| |
Vulnerable systems:
* WebReflex version 1.53
Remote attackers can view any file on the server simply sending a specially crafted request to it.
Exploit:
http://target/../
|
|
|
|
|
|
|
|