Sambar Server File Disclosure...

- AV AC AU C I A
发布: 2003-03-27
修订: 2025-04-13

Sambar Server does not properly validate URL requests to iecreate.stm and ieedit.stm. By appending directory traversal sequences such as '../' to requests for these applications, it is possible for a remote user to reveal the contents of directories on the webserver.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息