Описание
Directory traversal vulnerability in k23productions TFTPUtil GUI 1.2.0 and 1.3.0 allows remote attackers to read arbitrary files outside the TFTP root directory via directory traversal sequences in a GET request.
Directory traversal vulnerability in k23productions TFTPUtil GUI 1.2.0 and 1.3.0 allows remote attackers to read arbitrary files outside the TFTP root directory via directory traversal sequences in a GET request.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2009-0288
- https://exchange.xforce.ibmcloud.com/vulnerabilities/48019
- http://secunia.com/advisories/33561
- http://sourceforge.net/forum/forum.php?forum_id=894598
- http://www.princeofnigeria.org/blogs/index.php/2009/01/14/tftputil-gui-tftp-directory-traversal
- http://www.securityfocus.com/archive/1/500106/100/0/threaded
- http://www.securityfocus.com/bid/33287
Связанные уязвимости
nvd
около 17 лет назад
Directory traversal vulnerability in k23productions TFTPUtil GUI 1.2.0 and 1.3.0 allows remote attackers to read arbitrary files outside the TFTP root directory via directory traversal sequences in a GET request.