Methodus 3 Web Server - File Disclosure

EDB-ID:

22769

CVE:

N/A




Platform:

Windows

Date:

2003-06-13


source: https://www.securityfocus.com/bid/7908/info

The Methodus 3 Web Server component is prone to a file disclosure vulnerability. It is possible for remote attackers to retrieve resources outside of the web root directory via directory traversal attacks. This could potentially be exploited to gain access to sensitive files on a system hosting the vulnerable software.

http://www.example.com/../../../windows/win.ini