来源:自学PHP网 时间:2015-04-17 14:11 作者: 阅读:次
[导读] Luigi Auriemma程序: SpecView影响版本 = 2.5 build 853测试平台: Windows漏洞 web server directory traversal作者 Luigi Auriemma1)概述2) Bug3) The Code4)修复===============1)介绍说明==......
Luigi Auriemma
程序: SpecView 影响版本 <= 2.5 build 853 测试平台: Windows 漏洞 web server directory traversal 作者 Luigi Auriemma 1)概述 2) Bug 3) The Code 4)修复 =============== 1)介绍说明 =============== SpecView is an easy to use SCADA software. ====== 2) Bug ====== The software has an option (disabled by default) that allows to run a web server for providing an updated screenshot of the program. This built-in web server is affected by a classical directory traversal attack through the usage of more than two dots. =========== 3) The Code =========== http://www.2cto.com /.../.../.../.../.../.../boot.ini http://www.2cto.com /...\...\...\...\...\...\boot.ini ====== 4) 修复 ====== No fix. |
自学PHP网专注网站建设学习,PHP程序学习,平面设计学习,以及操作系统学习
京ICP备14009008号-1@版权所有www.zixuephp.com
网站声明:本站所有视频,教程都由网友上传,站长收集和分享给大家学习使用,如由牵扯版权问题请联系站长邮箱904561283@qq.com