CGI Script Center Auction Weaver...

- AV AC AU C I A
发布: 2000-08-23
修订: 2025-04-13

It is possible to view the contents of any known file residing on a system running CGI Script Center Auction Weaver. For example: http://target/cgi-bin/awl/auctionweaver.pl?flag1=1&catdir=\..\..\&fromfile=file.ext will allow a remote user, regardless of privilege level to read the file specified.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息