JAWS多个输入验证漏洞

漏洞信息详情

JAWS多个输入验证漏洞

漏洞简介

Jaws 0.3 BETA的index.php存在目录遍历漏洞。远程攻击者借助gadget参数中的..(点 点)查看任意文件。

漏洞公告

The vendor has released a security fix to address the file disclosure issue:
JAWS JAWS 0.3

参考网址

来源: BID
名称: 10670
链接:http://www.securityfocus.com/bid/10670

来源: SECTRACK
名称: 1010651
链接:http://securitytracker.com/id?1010651

来源: XF
名称: jaws-index-file-disclosure(16620)
链接:http://xforce.iss.net/xforce/xfdb/16620

来源: OSVDB
名称: 7722
链接:http://www.osvdb.org/7722

来源: FULLDISC
名称: 20040705 Multiples vulnerabilities in JAWS
链接:http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0226.html

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享